Lumen-Threat-Feed-Overview

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Content Index


Attribute Value
Type Workbook
Solution Lumen Defender Threat Feed
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Selection Criteria Transformations Ingestion API Lake-Only
ASimAuthenticationEventLogs ✓ ✓ ✓
ASimDnsActivityLogs ✓ ✓ ✓
ASimFileEventLogs ✓ ✓ ✓
ASimNetworkSessionLogs ✓ ✓ ✓
ASimProcessEventLogs Type == "microsoft.operationalinsights/workspaces" ✓ ✓ ✓
ASimWebSessionLogs ✓ ✓ ✓
AuditLogs ✓ ✗ ✓
AzureActivity ✗ ✗ ✗
CommonSecurityLog ✓ ✓ ✓
DeviceFileEvents ✓ ✗ ✓
DeviceNetworkEvents ✓ ✗ ✓
DeviceProcessEvents ✓ ✗ ✓
DnsEvents ✓ ✗ ✓
OfficeActivity ✓ ✗ ✓
SecurityAlert ✓ ✗ ✓
SecurityIncident ✓ ✗ ✓
SigninLogs ✓ ✗ ✓
ThreatIntelIndicators ✓ ✓ ✗

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Workbooks · Back to Lumen Defender Threat Feed