{
  "Name": "Lumen Defender Threat Feed",
  "Author": "Matthew Collier - matthew.collier@lumen.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Solutions/Lumen%20Defender%20Threat%20Feed/Workbooks/Images/Logo/Lumen.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The Lumen Defender Threat Feed for Microsoft Sentinel solution delivers high-confidence threat intelligence indicators of compromise directly into your Sentinel workspace.",
  "WorkbookBladeDescription": "This Microsoft Sentinel Solution installs workbooks. Workbooks provide a flexible canvas for data monitoring, analysis, and the creation of rich visual reports within the Azure portal. They allow you to tap into one or many data sources from Microsoft Sentinel and combine them into unified interactive experiences.",
  "AnalyticalRuleBladeDescription": "This solution installs the following analytic rule templates. After installing the solution, create and enable analytic rules in Manage solution view. ",
  "HuntingQueryBladeDescription": "This solution installs the following hunting queries. After installing the solution, run these hunting queries to hunt for threats in Manage solution view",
  "PlaybooksBladeDescription": "No playbooks are included in this solution.",
  "ParserBladeDescription": "No parsers are included in this solution.",
  "WatchlistBladeDescription": "No watchlists are included in this solution.",
  "SummaryRuleBladeDescription": "No summary rules are included in this solution.",
  "Workbooks": [
    "Workbooks/Lumen-Threat-Feed-Overview.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/Lumen_DomainEntity_DNS.yaml",
    "Analytic Rules/Lumen_IPEntity_CommonSecurityLog.yaml",
	  "Analytic Rules/Lumen_IPEntity_DeviceEvents.yaml",
	  "Analytic Rules/Lumen_IPEntity_IdentityLogonEvents.yaml",
	  "Analytic Rules/Lumen_IPEntity_OfficeActivity.yaml",
	  "Analytic Rules/Lumen_IPEntity_SecurityEvent.yaml",
	  "Analytic Rules/Lumen_IPEntity_SigninLogs.yaml",
	  "Analytic Rules/Lumen_IPEntity_WindowsEvents.yaml"
  ],
  "Hunting Queries": [
    "Hunting Queries/Lumen_IPIndicator_CommonSecurityLog.yaml"
  ],
  "Data Connectors": [
    "Data Connectors/LumenThreatFeedv2/LumenThreatFeedConnectorv2_ConnectorUI.json",
    "Data Connectors/LumenThreatFeedv2/LumenThreatFeedConnectorv2_PrivateNetworking_ConnectorUI.json"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\Lumen Defender Threat Feed",
  "Version": "3.2.0",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": false
}