Files
blue-team-tools/tools/config/ala-azure-ad_auditlogs.yml
T
Ibrahim Ali Khan 8bf07b3575 Create ala-azure-ad_auditlogs.yml
Azure AD Audit Logs mapping for Azure Log Analytics
2021-07-08 20:40:39 +05:00

12 lines
298 B
YAML

title: Azure AD Audit Logs mapping for Azure Log Analytics
order: 20
backends:
- ala
- ala-rule
fieldmappings:
category: Category
activityDisplayName: OperationName
loggedByService: LoggedByService
result: Result
initiatedBy.user.userPrincipalName: initiatedBy.user.userPrincipalName