Hello, I need your help
I am a SOC analyst, and I want to interconnect SentinelOne with ELK SIEM.
Could you help me to know if you have a tuto or clear documentation explaining all the steps please?
Thanks in advance
Hello, I need your help
I am a SOC analyst, and I want to interconnect SentinelOne with ELK SIEM.
Could you help me to know if you have a tuto or clear documentation explaining all the steps please?
Thanks in advance
Welcome to our community!
Do you mean SentinelOne | Elastic docs?
Hello , Thank you very much for your answer.
I have already consulted this doc, unfortunately, it just shows how to generate the sentinelone api. But does not show the steps for interconnection.
I got this working by deploying the SentinelOne integration to one of my fleet managed Elastic Agents.
Hello,
Did you manage to make the connection? Following which documentation please? With each necessary step
Thank you in advance
Thank you a lot for your answer.
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.