Description
This connector uses the [Dynatrace DQL Storage Query API](https://docs.dynatrace.com/docs/platform/grail/dynatrace-query-language) to ingest detected runtime vulnerabilities into Microsoft Sentinel Log Analytics.
- Statut déclaré
- 1
- Auteur / éditeur déclaré
- Dynatrace
Sources déclarées
Métadonnées du fichier source. Aucune dépendance déduite du KQL.
Types de données
Permissions déclarées
read and write permissions are required.
Workspace
Workspace
Dynatrace SaaS environment (ex. xyz.apps.dynatrace.com)
You need a Dynatrace SaaS environment (xxx.apps.dynatrace.com) with [Application Security](https://www.dynatrace.com/platform/application-security/) enabled. Classic Dynatrace environments (xxx.live.dynatrace.com) are not supported.
Dynatrace Platform Token
You need a Dynatrace platform token with the ***storage:buckets:read*** and ***storage:security.events:read*** scopes. See [Dynatrace platform tokens](https://docs.dynatrace.com/docs/manage/identity-access-management/access-tokens-and-oauth-clients/platform-tokens) for instructions.
Instructions du connecteur
Contenu publié dans le dépôt. Consultez le fichier original pour l’ensemble des paramètres.
Dynatrace Vulnerabilities Events to Microsoft Sentinel
Configure and Enable Dynatrace [Application Security](https://www.dynatrace.com/platform/application-security/).
1. Create a platform token with the ***storage:buckets:read*** and ***storage:security.events:read*** scopes following [these instructions](https://docs.dynatrace.com/docs/manage/identity-access-management/access-tokens-and-oauth-clients/platform-tokens).
2. Use your Dynatrace SaaS environment URL in the format ***xyz.apps.dynatrace.com***.
3. In **Microsoft Sentinel → Content Hub**, find the Dynatrace solution and enable the ***Consolidate Dynatrace Runtime Vulnerabilities*** summary rule. This is required to consolidate raw vulnerability events into the table used by analytics rules and the parser.
Dynatrace environment (ex. xyz.apps.dynatrace.com)
Dynatrace Platform Token
Contenus associés
Liens établis à partir des identifiants déclarés et des manifests des solutions.
Traçabilité de la source
GitHubLes valeurs affichées proviennent des fichiers du dépôt Azure/Azure-Sentinel. Elles décrivent le modèle publié, pas la configuration de votre workspace.
- Commit
9800e51↗- Identifiant source
DTRunVulnV3CCPDefinition
GSTEP / SUIVI DU CATALOGUE
Ajouté au catalogue : 16 sept. 2026 · 05:49 UTC
Dernier changement observé : 16 sept. 2026 · 05:49 UTC