Forum Discussion
AzureHacki
Jan 11, 2021Copper Contributor
Sentinel Connectors - Flat files, ODBC, IBMi
Hi All,
I am considering rolling-out Sentinel some time in the future and I am exploring what data types it can ingest. I am particularly looking for if it ingest/how it can ingest from
- Flat file logs
- Can it connect to a database and ingest from it(ODBC)
- How it could ingest from IBMi/iseries
Thanks in advance for your input
- Ofer_Shezaf
Microsoft
- For databases, in case your database is on-prem rather than a cloud service, I think that the best option would be Logstash. It might also be a good alternative for files.
- For IBM, it seems that iSeries supports CEF (see here). Also, zSecure supports CEF as outlined in what's new for zSecure V2.3.0
- AzureHackiCopper ContributorThanks ofer_shezaf that is helpfull.
- CliveWatson
Microsoft
1. Collect custom logs with Log Analytics agent in Azure Monitor - Azure Monitor | Microsoft Docs
for 2 and 3 you may need to use Logic Apps, as an example: Access data sources on premises - Azure Logic Apps | Microsoft Docs
- AzureHackiCopper Contributor
CliveWatson Thanks for that, it will help answer some of the questions!