{
  "Name": "ValimailEnforce",
  "Author": "Valimail - support@valimail.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/valimail.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The [Valimail API](https://support.valimail.com/en/articles/10911206-api-overview) solution provides ability to bring the Valimail Configuration events to your Microsoft Sentinel Workspace to inform and to examine potential security risks, analyze your team's use of collaboration, diagnose configuration problems and more. \n\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs:\n\na. [Azure Monitor Logs: DCR-based Custom Logs](https://learn.microsoft.com/azure/azure-monitor/logs/logs-ingestion-api-overview)\n\nb. [Codeless Connector Framework (CCF)](https://learn.microsoft.com/azure/sentinel/create-codeless-connector)",
  "Data Connectors": [
    "Data Connectors/ValimailEnforceEventLogs_ccp/ValimailEnforceEventLogs_connectorDefinition.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/ValimailEnforce_AuthKeyChanged.yaml",
    "Analytic Rules/ValimailEnforce_DMARCPolicyWeakened.yaml",
    "Analytic Rules/ValimailEnforce_UnusualChangeRate.yaml",
    "Analytic Rules/ValimailEnforce_UserManagementHighValue.yaml"
  ],
  "Hunting Queries": [
    "Hunting Queries/ValimailEnforce_BulkChanges.yaml",
    "Hunting Queries/ValimailEnforce_ChangeRateTrend.yaml",
    "Hunting Queries/ValimailEnforce_DMARCPolicyHistory.yaml",
    "Hunting Queries/ValimailEnforce_HighValueEventSummary.yaml"
  ],
  "BasePath": "C:\\Github\\Azure-Sentinel\\Solutions\\ValimailEnforce",
  "Version": "3.0.1",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": false,
  "Is1PConnector": false
}
