{
  "Name": "ImpervaCloudWAF",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Imperva_DarkGrey_final_75x75.svg\" width=\"75px\" height=\"75px\">",
  "Description": "[Imperva Cloud WAF](https://www.imperva.com/resources/resource-library/datasheets/imperva-cloud-waf/) offers the industry's leading web application security firewall, providing enterprise-class protection against the most sophisticated security threats. As a cloud-based WAF, it ensures that your website is always protected against any type of application layer hacking attempt. Imperva Cloud WAF is a key component of Imperva's market-leading, full stack application security solution which brings defence-in-depth to a new level.\n\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs:\n\na. [Azure Monitor HTTP Data Collector API](https://docs.microsoft.com/azure/azure-monitor/logs/data-collector-api)\n\nb. [Azure Functions](https://azure.microsoft.com/services/functions/#overview)\n\nc. [Codeless Connector Framework (CCF)](https://learn.microsoft.com/en-us/azure/sentinel/create-codeless-connector)",
  "Parsers": [
    "Parsers/ImpervaWAFCloud.yaml"
  ],
  "Data Connectors": [
    "Data Connectors/ImpervaCloudWAFLogs_ccf/ImpervaCloudWAFLogs_ConnectorDefinition.json",
    "Data Connectors/ImpervaWAFCloud_FunctionApp.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/ImpervaAbnormalProtocolUsage.yaml",
    "Analytic Rules/ImpervaAdminPanelUncommonIp.yaml",
    "Analytic Rules/ImpervaAttackNotBlocked.yaml",
    "Analytic Rules/ImpervaCommandInUri.yaml",
    "Analytic Rules/ImpervaForbiddenCountry.yaml",
    "Analytic Rules/ImpervaForbiddenMethod.yaml",
    "Analytic Rules/ImpervaMaliciousClient.yaml",
    "Analytic Rules/ImpervaMaliciousUA.yaml",
    "Analytic Rules/ImpervaMultipleUAsSource.yaml",
    "Analytic Rules/ImpervaSuspiciousDstPort.yaml"
  ],
  "Hunting Queries": [
    "Hunting Queries/ImpervaDestinationBlocked.yaml",
    "Hunting Queries/ImpervaInsecureWebProtocolVersion.yaml",
    "Hunting Queries/ImpervaNonWebApplication.yaml",
    "Hunting Queries/ImpervaRareApplications.yaml",
    "Hunting Queries/ImpervaRareClientApplications.yaml",
    "Hunting Queries/ImpervaRareDstPorts.yaml",
    "Hunting Queries/ImpervaRequestsFromBots.yaml",
    "Hunting Queries/ImpervaSourceBlocked.yaml",
    "Hunting Queries/ImpervaTopApplicationsErrors.yaml",
    "Hunting Queries/ImpervaTopSourcesErrors.yaml"
  ],
  "Workbooks": [
    "Workbooks/Imperva WAF Cloud Overview.json"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\ImpervaCloudWAF",
  "Metadata": "SolutionMetadata.json",
  "Version": "3.1.3",
  "TemplateSpec": true,
  "Is1PConnector": false
}
