{
  "Name": "TheHive",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Azure_Sentinel.svg\" width=\"75px\" height=\"75px\">",
  "Description": "[TheHive](http://thehive-project.org/) solution provides the capability to ingest common The Hive events into Microsoft Sentinel through Webhooks. The Hive can notify external system of modification events (case creation, alert update, task assignment) in real time. When a change occurs in The Hive, an HTTPS POST request with event information is sent to a callback data connector URL.  Refer to [Webhooks documentation](https://docs.thehive-project.org/thehive/legacy/thehive3/admin/webhooks/) for more information.\r\n \r\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs: \r\n \r\n a. [Azure Monitor HTTP Data Collector API](https://docs.microsoft.com/azure/azure-monitor/logs/data-collector-api) b. [Azure Functions ](https://azure.microsoft.com/services/functions/#overview)",
  "Data Connectors": ["Data Connectors/CCF/ConnectorDefinition.json"],
  "Parsers": ["Parsers/parser_TheHiveDataAliasFunction.json"],
  "Playbooks": [
    "Playbooks/TheHiveConnector/azuredeploy.json",
    "Playbooks/TheHive-CreateAlert/azuredeploy.json",
    "Playbooks/TheHive-CreateCase/azuredeploy.json",
    "Playbooks/TheHive-LockUser/azuredeploy.json"
  ],
  "Metadata": "SolutionMetadata.json",
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\TheHive",
  "Version": "3.0.2",
  "TemplateSpec": true,
  "Is1PConnector": false
}
