⚠️ Agari Solution

Solution: Agari

⚠️ Unpublished: This item is from a solution that is not yet published on Azure Marketplace or not installed in Content Hub.

Agari Logo

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index


Attribute Value
Publisher Microsoft Corporation
Support Tier Microsoft
Support Link https://support.microsoft.com
Categories Security - Threat Protection
Version 3.0.0
Author Agari - support@agari.com
First Published 2026-05-14
Last Updated 2026-05-22
Solution Folder Agari
Marketplace Azure Marketplace · Popularity: 🟡 Low (42%)

Agari Phishing Defense and Brand Protection Solution for Microsoft Sentinel makes it easy to connect Agari email threat data to the Microsoft Sentinel SOAR, improving visibility into email threats, accelerating incident response, and driving SOC efficiency. The Agari Data Connector included in the solution supports every Agari product: Agari Brand Protection, Agari Phishing Defense, and Agari Phishing Response. Leveraging Agari data to enrich and share threat intelligence across multiple applications helps safeguard your entire infrastructure against email threats. For more details about this solution refer to https://www.agari.com/insights/solution-briefs/microsoft-azure-sentinel-integration/

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a. Codeless Connector Framework (CCF)

b. Log Ingestion API

c. Data Collection Rules (DCR)

Data Connectors

This solution provides 1 data connector(s) (plus 1 discovered⚠️):

🔍 Discovered: This item was discovered by scanning the solution folder but is not listed in the Solution JSON file.

🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Tables Used

This solution uses 8 table(s):

Table Used By Connectors Used By Content
AgariAPDPolicyLog_CL Fortra Agari Data Connector (via Codeless Connector Framework) -
AgariAPDTCLog_CL Fortra Agari Data Connector (via Codeless Connector Framework) -
AgariAPRInvestigationsLog_CL Fortra Agari Data Connector (via Codeless Connector Framework) -
AgariBPAlertsLog_CL Fortra Agari Data Connector (via Codeless Connector Framework) -
AgariBPThreatFeedSubs_CL Fortra Agari Data Connector (via Codeless Connector Framework) -
agari_apdpolicy_log_CL 🔶 Agari Phishing Defense and Brand Protection -
agari_apdtc_log_CL 🔶 Agari Phishing Defense and Brand Protection -
agari_bpalerts_log_CL Agari Phishing Defense and Brand Protection -

🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Release Notes

Version Date Modified (DD-MM-YYYY) Change History
3.0.0 14-05-2026 Created a Data Connector for Agari CCF Container.

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index