Skip to content

Commit 23fb4dc

Browse files
committed
preview tag added
1 parent bfd9f54 commit 23fb4dc

File tree

3 files changed

+19
-25
lines changed

3 files changed

+19
-25
lines changed

Solutions/Cisco Secure Endpoint/Data Connectors/CiscoSecureEndpointLogs_ccp/CiscoSecureEndpointLogs_ConnectorDefinition.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@
77
"properties": {
88
"connectorUiConfig": {
99
"id": "CiscoSecureEndpointLogsCCPDefinition",
10-
"title": "Cisco Secure Endpoint (via Codeless Connector Framework)",
10+
"title": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
1111
"publisher": "Microsoft",
1212
"descriptionMarkdown": "The Cisco Secure Endpoint (formerly AMP for Endpoints) data connector provides the capability to ingest Cisco Secure Endpoint [audit logs](https://developer.cisco.com/docs/secure-endpoint/auditlog/) and [events](https://developer.cisco.com/docs/secure-endpoint/v1-api-reference-event/) into Microsoft Sentinel.",
1313
"graphQueries": [
9 Bytes
Binary file not shown.

Solutions/Cisco Secure Endpoint/Package/mainTemplate.json

Lines changed: 18 additions & 24 deletions
Original file line numberDiff line numberDiff line change
@@ -1298,7 +1298,7 @@
12981298
],
12991299
"properties": {
13001300
"contentId": "[variables('_dataConnectorContentIdConnectorDefinition1')]",
1301-
"displayName": "Cisco Secure Endpoint (via Codeless Connector Framework)",
1301+
"displayName": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
13021302
"contentKind": "DataConnector",
13031303
"mainTemplate": {
13041304
"$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentTemplate.json#",
@@ -1315,7 +1315,7 @@
13151315
"properties": {
13161316
"connectorUiConfig": {
13171317
"id": "CiscoSecureEndpointLogsCCPDefinition",
1318-
"title": "Cisco Secure Endpoint (via Codeless Connector Framework)",
1318+
"title": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
13191319
"publisher": "Microsoft",
13201320
"descriptionMarkdown": "The Cisco Secure Endpoint (formerly AMP for Endpoints) data connector provides the capability to ingest Cisco Secure Endpoint [audit logs](https://developer.cisco.com/docs/secure-endpoint/auditlog/) and [events](https://developer.cisco.com/docs/secure-endpoint/v1-api-reference-event/) into Microsoft Sentinel.",
13211321
"graphQueries": [
@@ -2597,7 +2597,7 @@
25972597
"properties": {
25982598
"connectorUiConfig": {
25992599
"id": "CiscoSecureEndpointLogsCCPDefinition",
2600-
"title": "Cisco Secure Endpoint (via Codeless Connector Framework)",
2600+
"title": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
26012601
"publisher": "Microsoft",
26022602
"descriptionMarkdown": "The Cisco Secure Endpoint (formerly AMP for Endpoints) data connector provides the capability to ingest Cisco Secure Endpoint [audit logs](https://developer.cisco.com/docs/secure-endpoint/auditlog/) and [events](https://developer.cisco.com/docs/secure-endpoint/v1-api-reference-event/) into Microsoft Sentinel.",
26032603
"graphQueries": [
@@ -2807,7 +2807,7 @@
28072807
],
28082808
"properties": {
28092809
"contentId": "[variables('_dataConnectorContentIdConnections1')]",
2810-
"displayName": "Cisco Secure Endpoint (via Codeless Connector Framework)",
2810+
"displayName": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
28112811
"contentKind": "ResourcesDataConnector",
28122812
"mainTemplate": {
28132813
"$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentTemplate.json#",
@@ -2822,7 +2822,7 @@
28222822
"type": "securestring"
28232823
},
28242824
"connectorDefinitionName": {
2825-
"defaultValue": "Cisco Secure Endpoint (via Codeless Connector Framework)",
2825+
"defaultValue": "Cisco Secure Endpoint (via Codeless Connector Framework) (Preview)",
28262826
"type": "securestring",
28272827
"minLength": 1
28282828
},
@@ -3231,19 +3231,15 @@
32313231
"title": "[DEPRECATED] Cisco Secure Endpoint (AMP) (using Azure Functions)",
32323232
"publisher": "Cisco",
32333233
"descriptionMarkdown": "The Cisco Secure Endpoint (formerly AMP for Endpoints) data connector provides the capability to ingest Cisco Secure Endpoint [audit logs](https://api-docs.amp.cisco.com/api_resources/AuditLog?api_host=api.amp.cisco.com&api_version=v1) and [events](https://api-docs.amp.cisco.com/api_actions/details?api_action=GET+%2Fv1%2Fevents&api_host=api.amp.cisco.com&api_resource=Event&api_version=v1) into Microsoft Sentinel.\n\n<p><span style='color:red; font-weight:bold;'>NOTE</span>: This data connector has been deprecated, consider moving to the CCF data connector available in the solution which replaces ingestion via the <a href='https://learn.microsoft.com/en-us/azure/azure-monitor/logs/custom-logs-migrate' style='color:#1890F1;'>deprecated HTTP Data Collector API</a>.</p>",
3234-
"graphQueries": [
3235-
{
3236-
"metricName": "Cisco Secure Endpoint logs",
3237-
"legend": "CiscoSecureEndpoint_CL",
3238-
"baseQuery": "CiscoSecureEndpoint_CL"
3239-
}
3240-
],
3241-
"dataTypes": [
3242-
{
3243-
"name": "CiscoSecureEndpoint_CL",
3244-
"lastDataReceivedQuery": "CiscoSecureEndpoint_CL\n | summarize Time = max(TimeGenerated)\n | where isnotempty(Time)"
3245-
}
3246-
],
3234+
"graphQueries": {
3235+
"metricName": "Cisco Secure Endpoint logs",
3236+
"legend": "CiscoSecureEndpoint_CL",
3237+
"baseQuery": "CiscoSecureEndpoint_CL"
3238+
},
3239+
"dataTypes": {
3240+
"name": "CiscoSecureEndpoint_CL",
3241+
"lastDataReceivedQuery": "CiscoSecureEndpoint_CL\n | summarize Time = max(TimeGenerated)\n | where isnotempty(Time)"
3242+
},
32473243
"connectivityCriterias": [
32483244
{
32493245
"type": "IsConnectedQuery",
@@ -3252,12 +3248,10 @@
32523248
]
32533249
}
32543250
],
3255-
"sampleQueries": [
3256-
{
3257-
"description": "All Cisco Secure Endpoint logs",
3258-
"query": "CiscoSecureEndpoint_CL\n| sort by TimeGenerated desc"
3259-
}
3260-
],
3251+
"sampleQueries": {
3252+
"description": "All Cisco Secure Endpoint logs",
3253+
"query": "CiscoSecureEndpoint_CL\n| sort by TimeGenerated desc"
3254+
},
32613255
"availability": {
32623256
"status": 1,
32633257
"isPreview": false

0 commit comments

Comments
 (0)