-
Notifications
You must be signed in to change notification settings - Fork 575
SentinelOne #1170
Copy link
Copy link
Closed
Labels
8.3 candidateCategory: EDR/EPP/XDREpicIn ProgressNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.PartnerTheme: just_ingest_itv8.3.0
Metadata
Metadata
Assignees
Labels
8.3 candidateCategory: EDR/EPP/XDREpicIn ProgressNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.PartnerTheme: just_ingest_itv8.3.0
Type
Fields
Give feedbackNo fields configured for issues without a type.
Description
Sentinel One is an endpoint security solution based on the idea of of working automatically not just to detect endpoints and their vulnerabilities, but to apply behavioral models, and various modes of protection, detection and response in one solution. Their solutions (including XDR, IoT and Cloud Workload Protection) reside within the Singularity Platform.
Architecture
Syslog (CEF or RFC5424) is supported.
Integration release checklist
This checklist is intended for integrations maintainers to ensure consistency
when creating or updating a Package, Module or Dataset for an Integration.
All changes
New Package
Dashboards changes
Log dataset changes
sample_event.json) exists