Forum Discussion
Pawel_Giza
Oct 21, 2020Copper Contributor
CEF logs CrowdStrike
Hi,
I imported logs from CrowdStrike to Azure Sentinel. I see a large number of logs but what can I do next?
I want to be able to search by hosts in Entity Behavior and check all activities by the host but at this moment Entity Behavior has only from Controllers Domain, how can I save logs from log analytics CEF CrowdStrike to Entity Behavior?
- Thijs LecomteBronze ContributorI assume you mean UEBA?
UEBA only supports a subset of data connectors as of now.