{
  "Name": "iboss",
  "Author": "iboss",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Solutions/iboss/Workbooks/Images/Logo/iboss_full-logo_2020_vector_black.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The iboss Solution provides means to connect your Threat Console to Microsoft Sentinel and enrich your instance with iboss URL event logs. Our logs are forwarded in Common Event Format (CEF) over Syslog and the configuration required can be completed on the iboss platform without the use of a proxy. Take advantage of our connector to garner critical data points and gain insight into security threats.\n\n This solution is dependent on the Common Event Format solution containing the CEF via AMA connector to collect the logs. The CEF solution will be installed as part of this solution installation.",
  "Data Connectors": [
    "Data Connectors/template_ibossAMA.json"
  ],
  "Parsers": [
    "Parsers/ibossUrlEvent.yaml"
  ],
  "Analytic Rules": [
    "Analytic Rules/ibossMalwareDetected.yaml",
    "Analytic Rules/ibossCommandAndControlDetected.yaml"
  ],
  "Workbooks": [
    "Workbooks/ibossMalwareAndC2.json",
    "Workbooks/ibossWebUsage.json"
  ],
  "dependentDomainSolutionIds": [
    "azuresentinel.azure-sentinel-solution-commoneventformat"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\iboss",
  "Version": "3.1.3",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1Pconnector": false
}
