{
  "Name": "Red Canary",
  "Author": "Red Canary - microsoft@redcanary.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/red_canary_logo.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The [Red Canary](https://www.redcanary.com/) solution for Microsoft Sentinel enables Red Canary to publish threat detections into a Microsoft Sentinel custom table for alerting and incident creation.\n\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies might result in additional ingestion or operational costs:\n\na. [Microsoft Sentinel Codeless Connector Framework](https://learn.microsoft.com/azure/sentinel/create-codeless-connector)\n\nb. [Azure Monitor Logs Ingestion API](https://learn.microsoft.com/azure/azure-monitor/logs/logs-ingestion-api-overview)\n\nc. [Data collection rules](https://learn.microsoft.com/azure/azure-monitor/essentials/data-collection-rule-overview)",
  "Data Connectors": [
    "Data Connectors/RedCanary_ccf/RedCanary_ConnectorDefinition.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/RedCanaryThreatDetection.yaml"
  ],
  "BasePath": "Solutions/Red Canary",
  "Version": "3.0.0",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1PConnector": false
}
