Industry
Technology
Use-Case
Classification:
threat-intel
Set up the azure integration.
Detect when an Azure firewall threat intelligence alert is received.
Monitor Azure Network Diagnostic logs and detect when @evt.name is equal to AzureFirewallThreatIntelLog.
@evt.name
AzureFirewallThreatIntelLog