↳ Source GitHubConnecteur

Infoblox IQ for Threat Defense Insight Data Connector via REST API

Une incohérence a été détectée dans les sources : variantes ou fichier invalide. Vérifiez les fichiers et le commit indiqués ci-dessous.

Description

The Infoblox IQ for Threat Defense Insight Data Connector allows you to easily connect your Infoblox IQ for Threat Defense Insight data with Microsoft Sentinel. By connecting your logs to Microsoft Sentinel, you can take advantage of search & correlation, alerting, and threat intelligence enrichment for each log.
Statut déclaré
1
Auteur / éditeur déclaré
Infoblox

Sources déclarées

Métadonnées du fichier source. Aucune dépendance déduite du KQL.

Types de données

Permissions déclarées

read and write permissions are required.
Workspace
Workspace
read permissions to shared keys for the workspace are required. [See the documentation to learn more about workspace keys](https://docs.microsoft.com/azure/azure-monitor/platform/agent-windows#obtain-workspace-id-and-key).
Keys
Workspace

Instructions du connecteur

Contenu publié dans le dépôt. Consultez le fichier original pour l’ensemble des paramètres.

Parsers
>This data connector depends on a parser based on a Kusto Function to work as expected called [**InfobloxInsight**](https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Infoblox/Parsers/InfobloxInsight.yaml) which is deployed with the Microsoft Sentinel Solution.
Infoblox IQ for Threat Defense
>This data connector assumes you have access to Infoblox IQ for Threat Defense. You can find more information about it [**here**](https://docs.infoblox.com/space/BloxOneThreatDefense/2448392230/Infoblox+IQ+for+Threat+Defense).
Follow the steps below to configure this data connector
1. Generate an Infoblox API Key and copy it somewhere safe
In the [Infoblox Cloud Services Portal](https://csp.infoblox.com/atlas/app/welcome), generate an API Key and copy it somewhere safe to use in the next step. You can find instructions on how to create API keys [**here**](https://docs.infoblox.com/space/BloxOneThreatDefense/230394187/How+Do+I+Create+an+API+Key%3F).
2. Configure the Infoblox-IQ-for-TD-Get-Insights-API playbook
Create and configure the **Infoblox-IQ-for-TD-Get-Insights-API** playbook which is deployed with this solution. Enter your Infoblox API key and the Log Analytics Workspace Name in the appropriate parameters when prompted.

Contenus associés

Liens établis à partir des identifiants déclarés et des manifests des solutions.

Traçabilité de la source

GitHub

Les valeurs affichées proviennent des fichiers du dépôt Azure/Azure-Sentinel. Elles décrivent le modèle publié, pas la configuration de votre workspace.

Identifiant source
InfobloxSOCInsightsDataConnector_API
Autres fichiers source 2Solutions/Infoblox/Data Connectors/InfobloxSOCInsights/InfobloxSOCInsightsDataConnector_API.jsonsource ↗Solutions/Infoblox/Data/Solution_Infoblox.jsonsolution-membership ↗
GSTEP / SUIVI DU CATALOGUE

Ajouté au catalogue : 16 sept. 2026 · 05:49 UTC
Dernier changement observé : 16 sept. 2026 · 05:49 UTC

Dates de synchronisation GSTEP, distinctes des dates de publication du contenu source.