{
  "Name": "Oracle Cloud Infrastructure",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Azure_Sentinel.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The Oracle Cloud Infrastructure (OCI) solution provides the capability to ingest OCI Logs from [OCI Stream](https://docs.oracle.com/iaas/Content/Streaming/Concepts/streamingoverview.htm) into Microsoft Sentinel using the [OCI Streaming REST API](https://docs.oracle.com/iaas/api/#/streaming/streaming/20180418).\n\n**Underlying Microsoft Technologies used:**\n\nThis Solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs:\n\n • [Microsoft Sentinel Codeless Connector Framework](https://aka.ms/Sentinel-CCP_Platform)",
  "Workbooks": [
    "Workbooks/OracleCloudInfrastructureOCI.json"
  ],
  "Hunting Queries": [
    "Hunting Queries/OCIDestinationsIn.yaml",
    "Hunting Queries/OCIDestinationsOut.yaml",
    "Hunting Queries/OCILaunchedInstances.yaml",
    "Hunting Queries/OCIUpdateActivities.yaml",
    "Hunting Queries/OCIUserDeleteActions.yaml",
    "Hunting Queries/OCIUserDeletedUsers.yaml",
    "Hunting Queries/OCIUserNewUsers.yaml",
    "Hunting Queries/OCIUserSources.yaml",
    "Hunting Queries/OCIUserTerminatedInstances.yaml",
    "Hunting Queries/OCIUserUpdatedInstances.yaml"
  ],
  "Data Connectors": [
    "Data Connectors/Oracle_Cloud_Infrastructure_CCP/OCI_DataConnector_DataConnectorDefinition.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/OCIDiscoveryActivity.yaml",
    "Analytic Rules/OCIEventRuleDeleted.yaml",
    "Analytic Rules/OCIInboundSSHConnection.yaml",
    "Analytic Rules/OCIInsecureMetadataEndpoint.yaml",
    "Analytic Rules/OCIMetadataEndpointIpAccess.yaml",
    "Analytic Rules/OCIMultipleInstancesLaunched.yaml",
    "Analytic Rules/OCIMultipleInstancesTerminated.yaml",
    "Analytic Rules/OCIMultipleRejects.yaml",
    "Analytic Rules/OCISSHScan.yaml",
    "Analytic Rules/OCIUnexpectedUserAgent.yaml"
  ],
  "Parsers": [
    "Parsers/OCILogs.yaml"
  ],
  "BasePath": "~\\dev\\msft\\Azure-Sentinel\\Solutions\\Oracle Cloud Infrastructure",
  "Version": "3.0.11",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1Pconnector": false
}
