Forum Discussion

ciberociber's avatar
ciberociber
Copper Contributor
Jan 13, 2025

Integration of Microsoft Defender into SIEM Open Source via Syslog

Hello everyone,


I have:

 

  • Microsoft Defender central console
  • Endpoints reporting to central console
  • SIEM open source 

I need to be able to export all logs from Microsoft Defender central console to SIEM via Syslog.

 

Could someone provide me with a guide or step by step configuration?


Thanks in advance!

1 Reply