IllumioCoreEvent

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Parsers Index


Parser Information

Attribute Value
Title Parser for IllumioCoreEvent
Location Solution
Solution Illumio Core ⚠️
Version 1.0.0
Last Updated 2023-08-23
Category Microsoft Sentinel Parser
File Type .yaml
Source View on GitHub

Source Tables

This parser reads from the following tables:

Table Selection Criteria Transformations Ingestion API Lake-Only
CommonSecurityLog DeviceCustomString1Label in "dst_vulns,event_href"
DeviceCustomString2Label in "resource_changes,state"
DeviceCustomString4Label in "dst_labels,notifications"
DeviceCustomString6Label == "dst_href"
DeviceVendor == "Illumio"

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Parsers Index