Files
blue-team-tools/tools/config/ala-azure-activitylogs.yml
T
Ibrahim Ali Khan 7bba239f56 Create ala-azure-activitylogs.yml
Azure Activity Logs mapping for Azure Log Analytics
2021-07-08 20:40:03 +05:00

11 lines
272 B
YAML

title: Azure Activity Logs mapping for Azure Log Analytics
order: 20
backends:
- ala
- ala-rule
fieldmappings:
claims.name: Caller
properties.message: OperationNameValue
properties.eventCategory: CategoryValue
resourceProviderName.value: ResourceProviderValue