ZscalarDNSEventsIPSummary

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


This summary rule aggregates DNS events from Zscaler Internet Access devices, providing hourly insights into event count by event result details, dns query, source username, source and destination IP addresses .

Attribute Value
Type Summary Rule
Solution Standalone Content
ID 260f16fc-4734-4635-babd-ba3c860f328b
Required Connectors CefAma
Source [View on GitHub](https://github.com/Azure/Azure-Sentinel/blob/master/Summary rules/DNS/ZscalarDNSEventsIPSummary.yaml)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Summary Rules