{
  "Name": "Azure Cloud NGFW By Palo Alto Networks",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Solutions/PaloAlto-PAN-OS/logo/Palo-alto-logo.png\" width=\"75px\" height=\"75px\">",
  "Description": "The [Azure Cloud NGFW By Palo Alto Networks](https://docs.paloaltonetworks.com/cloud-ngfw/azure) Solution for Microsoft Sentinel allows you to easily connect your Cloud NGFW logs with Microsoft Sentinel, to view dashboards, create custom alerts, and improve investigation. This gives you more insight into your organization's network and improves your security operation capabilities. This solution also contains playbooks to help in automated remediation. \n\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs: \n\na. [Agent-based log collection (CEF over Syslog)](https://docs.microsoft.com/azure/sentinel/connect-common-event-format)",
  "Data Connectors": [
    "Data Connectors/Azure Cloud NGFW By Palo Alto Networks/CloudNgfwByPAN.json"
  ],
  "Hunting Queries": [
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Hunting Queries/CloudNGFW-HighRiskPorts.yaml",
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Hunting Queries/CloudNGFW-PotentialBeaconing.yaml"
  ],
  "Workbooks": [
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Workbooks/CloudNGFW-Overview.json",
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Workbooks/CloudNGFW-NetworkThreat.json"
  ],
  "Analytic Rules": [
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Analytic Rules/CloudNGFW-UnusualThreatSignatures.yaml",
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Analytic Rules/CloudNGFW-NetworkBeaconing.yaml",
    "Solutions/Azure Cloud NGFW By Palo Alto Networks/Analytic Rules/CloudNGFW-PortScanning.yaml"
  ],
  "Playbooks": [],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\Azure Cloud NGFW by Palo Alto Networks\\",
  "Version": "3.0.1",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1Pconnector": false
}