Skip to content

Commit 3d24c28

Browse files
Merge branch 'main' into CSOAR-3196-new
2 parents 5e4810f + 223e5d0 commit 3d24c28

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

48 files changed

+595
-185
lines changed

.clabot

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -184,7 +184,8 @@
184184
"dlindelof-sumologic",
185185
"snyk-bot",
186186
"stephenthedev",
187-
"Apoorvkudesia-sumologic"
187+
"Apoorvkudesia-sumologic",
188+
"ntanwar-sumo"
188189
],
189190
"message": "Thank you for your contribution! As this is an open source project, we require contributors to sign our Contributor License Agreement and do not have yours on file. To proceed with your PR, please [sign your name here](https://forms.gle/YgLddrckeJaCdZYA6) and we will add you to our approved list of contributors.",
190191
"label": "cla-signed",

.github/workflows/pr.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -44,5 +44,5 @@ jobs:
4444
name: Check spelling
4545
with:
4646
skip: "*.svg,*.js,*.map,*.css,*.scss"
47-
ignore_words_list: "aks,atleast,cros,ddress,fiel,ist,nd,ot,pullrequest,ser,shttp,wast,fo,seldomly,delt,cruzer,plack,secur,te,nginx,Nginx,notin"
47+
ignore_words_list: "aks,atleast,cros,ddress,delink,fiel,ist,nd,ot,pullrequest,ser,shttp,wast,fo,seldomly,delt,cruzer,plack,secur,te,nginx,Nginx,notin"
4848
path: docs

blog-service/2025-06-20-apps.md

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,13 @@
11
---
2-
title: Akamai CPC (Apps)
2+
title: New SaaS and Cloud Apps Release (Apps)
33
image: https://help.sumologic.com/img/sumo-square.png
44
keywords:
55
- apps
6+
- snowflake-logs
67
- akamai-cpc
78
hide_table_of_contents: true
89
---
910

11+
- **Akamai CPC**.We're excited to introduce the new Akamai CPC app for Sumo Logic. This app enables you to monitor threats and respond to them in real time, enforcing compliance for client-side web applications using rich dashboards and Akamai CPC data. [Learn more](/docs/integrations/saas-cloud/akamai-cpc).
1012

11-
We're excited to introduce the new Akamai CPC app for Sumo Logic. This app enables you to monitor threats and respond to them in real time, enforcing compliance for client-side web applications using rich dashboards and Akamai CPC data. [Learn more](/docs/integrations/saas-cloud/akamai-cpc).
13+
- **Snowflake Logs**. We're excited to introduce the new Snowflake Logs app for Sumo Logic. This app enables you to gain real-time insights into key metrics, query performance, and overall health of the Snowflake environments to optimize operations, support informed decisions, and maximize Snowflake's potential. [Learn more](/docs/integrations/saas-cloud/snowflake-logs).

blog-service/2025-06-20-manage.md

Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
---
2+
title: Deactivate and Delink the Child Orgs (Manage)
3+
image: https://help.sumologic.com/img/sumo-square.png
4+
keywords:
5+
- manage
6+
- child-org
7+
- deactivate-and-delink
8+
hide_table_of_contents: true
9+
---
10+
11+
import useBaseUrl from '@docusaurus/useBaseUrl';
12+
13+
We're happy to introduce the deactivate and delink option to child orgs, this helps you to deactivate the child org when it is no longer needed and eventually delink it after the 48 hours cooling-off period.
14+
15+
[Learn more](/docs/manage/manage-subscription/create-and-manage-orgs/).

cid-redirects.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1649,6 +1649,7 @@
16491649
"/cid/6028": "/docs/integrations/saas-cloud/bitwarden",
16501650
"/cid/6029": "/docs/integrations/saas-cloud/kaltura",
16511651
"/cid/6030": "/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/snowflake-logs-source",
1652+
"/cid/6031": "/docs/integrations/saas-cloud/snowflake-logs",
16521653
"/cid/6032": "/docs/integrations/saas-cloud/akamai-cpc",
16531654
"/cid/10112": "/docs/integrations/app-development/jfrog-xray",
16541655
"/cid/10113": "/docs/observability/root-cause-explorer-deprecation",

docs/cloud-soar/incidents-triage.md

Lines changed: 139 additions & 25 deletions
Large diffs are not rendered by default.

docs/cloud-soar/overview.md

Lines changed: 21 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -153,7 +153,7 @@ Use the **Go To...** menu to access these Cloud SOAR features:
153153
* [**Entities**](/docs/cloud-soar/incidents-triage/#entities). Manage entities identified across incidents.
154154
* [**Fields**](/docs/cloud-soar/overview/#custom-fields). Customize fields to better suit your environment.
155155
* [**General**](#settings). Configure general Cloud SOAR settings.
156-
* [**Groups**](#groups). Create a group of users and assign a role to all the users in the group.
156+
* [**Groups**](#groups). Create a group of users that can be added as incident investigators.
157157
* [**Incidents**](/docs/cloud-soar/incidents-triage/#incidents). Manage security incidents that require investigation and action.
158158
* [**Incident Labels**](#incident-labels). Define labels for the different types of incidents that will be investigated.
159159
* [**Notifications**](#notifications). Configure notifications to Cloud SOAR users as well as other external users.
@@ -177,7 +177,7 @@ The **Administration** menu allows you to administer Sumo Logic features, such a
177177
Use the **Administration** menu to access:
178178
* [**General**](#general). Configure general Cloud SOAR settings.
179179
* [**Notifications**](#notifications). Configure notifications to Cloud SOAR users as well as other external users.
180-
* [**Groups**](#groups). Create a group of users and assign a role to all the users in the group.
180+
* [**Groups**](#groups). Create a group of users that can be added as incident investigators.
181181

182182

183183
## Settings
@@ -229,26 +229,33 @@ For additional setup needed for Slack, see [Configure Slack for Cloud SOAR](/doc
229229

230230
### Groups
231231

232-
[**Classic UI**](/docs/cloud-soar/overview#classic-ui). To access groups settings, click the gear icon <img src={useBaseUrl('img/cloud-soar/cloud-soar-settings-icon.png')} alt="Settings menu icon" style={{border: '1px solid gray'}} width="25"/> in the top right, select **Settings**, and on the left menu select **User Management > Groups**.
232+
A *group* in Cloud SOAR is a collection of users that can be added as incident investigators. When you have a number of users to add as investigators, adding a group of users is faster and easier than adding each user individually. In addition, you can assign everyone in the group the same profile (role), limiting them as incident investigators to only the rights that the profile gives them.
233233

234-
[**New UI**](/docs/cloud-soar/overview#new-ui). To access groups settings, in the top menu select **Administration**, and then under **Cloud SOAR Settings** select **Groups**. You can also click the **Go To...** menu at the top of the screen and select **Groups**.
235-
236-
237-
<img src={useBaseUrl('img/cloud-soar/cloud-soar-groups.png')} alt="Groups dialog" style={{border: '1px solid gray'}} width="700"/>
234+
For example, let's say that you have a team of SOC analysts that share responsibility for investigating incidents. You can add all the members of the team to a group and give its members the "Analyst" profile. Then when you need to add the SOC analysts as investigators to incidents, you can simply select the group as the investigator.
238235

239236
#### Create a group
240237

241-
You can create a group of users and assign a role to all the users in the group. This makes it easy to assign a specialized role to multiple users at once rather than adding the users individually to the role.
242-
243-
For example, say there is a group of users with different roles responsible for customer support. Access to a specific incident with restricted privileges needs to be granted to all investigators of the incident. You can create a role with just the needed [Cloud SOAR role capabilities](/docs/manage/users-roles/roles/role-capabilities/#cloud-soar) and select it as the role (also known as a profile) for members of the group. Then when you [add investigators](/docs/cloud-soar/incidents-triage/#add-investigators) for the incident, you can select the group rather than individual users.
244-
245-
1. Click the **+** icon next to **Groups**. The **Add Groups** dialog is displayed. <br/><img src={useBaseUrl('img/cloud-soar/cloud-soar-add-group.png')} alt="Add Group dialog" style={{border: '1px solid gray'}} width="600"/>
238+
1. [**Classic UI**](/docs/cloud-soar/overview#classic-ui). Click the gear icon <img src={useBaseUrl('img/cloud-soar/cloud-soar-settings-icon.png')} alt="Settings menu icon" style={{border: '1px solid gray'}} width="25"/> in the top right, select **Settings**, and on the left menu select **User Management > Groups**.<br/>[**New UI**](/docs/cloud-soar/overview#new-ui). In the top menu select **Administration**, and then under **Cloud SOAR Settings** select **Groups**. You can also click the **Go To...** menu at the top of the screen and select **Groups**.
239+
1. The **Groups** dialog displays. Click the **+** icon next to **Groups**. <br/><img src={useBaseUrl('img/cloud-soar/cloud-soar-groups.png')} alt="Groups dialog" style={{border: '1px solid gray'}} width="700"/><br/>The **Add Groups** dialog is displayed. <br/><img src={useBaseUrl('img/cloud-soar/cloud-soar-add-group.png')} alt="Add Group dialog" style={{border: '1px solid gray'}} width="600"/>
246240
1. In **Name** enter a name for the group.
247-
1. In **Profile** select the role to use for members of the group. These are [roles](/docs/manage/users-roles/roles/) already created in the system.
241+
1. In **Profile** select the role to assign to members of the group. These are [roles](/docs/manage/users-roles/roles/) already created in the system.
248242
1. Click **Create**. The empty group is displayed. <br/><img src={useBaseUrl('img/cloud-soar/cloud-soar-example-group.png')} alt="Example group" style={{border: '1px solid gray'}} width="600"/>
249243
1. Click the **+** icon next to **Members**.
250244
1. Select the users to add to the group.
251-
1. Click **Apply**.
245+
1. Click **Apply**.
246+
247+
#### Assign a group as an incident investigator
248+
249+
To add a group as an incident investigator, follow the same steps as described in [Add investigators](/docs/cloud-soar/incidents-triage/#add-investigators):
250+
1. [**Classic UI**](/docs/cloud-soar/overview#classic-ui). At the top of the screen, click **Incidents**. <br/>[**New UI**](/docs/cloud-soar/overview#new-ui). In the main Sumo Logic menu, select **Cloud SOAR > Incidents**. You can also click the **Go To...** menu at the top of the screen and select **Incidents**.
251+
1. Check the incidents you want to add investigators to.
252+
1. Click the three-dot kebab menu in the upper left-hand corner of the screen.
253+
1. Select **Add Investigator**.<br/>The **Add Investigator** screen is displayed. <br/><img src={useBaseUrl('img/cloud-soar/cloud-soar-add-investigator.png')} alt="Add Investigator dialog" style={{border: '1px solid gray'}} width="700"/>
254+
1. Select the group to add as investigator of the selected incidents. For example, in the sample screen above, select **SOC Team**.
255+
:::note
256+
The **Role** column displays the profile assigned to the members of the group. You cannot change the group's assigned profile (role) here like you can for individual users. You can only change the group's assigned profile on the group itself.
257+
:::
258+
1. Click **Apply**. The group is added an an investigator of the selected incidents. While investigating the incidents, members of the group have the rights given by the the role (profile) assigned to members of the group.
252259

253260
#### Group role assignments
254261

docs/integrations/microsoft-azure/azure-api-management.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -32,9 +32,10 @@ When you configure the Event Hubs source or HTTP source, plan your source catego
3232

3333
### Configure metrics collection
3434

35-
To set up the Azure Metrics source in Sumo Logic, refer to [Azure Metrics Source](/docs/send-data/hosted-collectors/microsoft-source/azure-metrics-source).
35+
import MetricsSourceBeta from '../../reuse/metrics-source-beta.md';
36+
37+
<MetricsSourceBeta/>
3638

37-
3839
:::note
3940
In the v2 service tiers, API Management has replaced the capacity metric with separate CPU and memory utilization metrics
4041
:::

docs/integrations/microsoft-azure/azure-app-service-plan.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,9 @@ When you configure the event hubs source or HTTP source, plan your source catego
3131

3232
### Configure metrics collection
3333

34-
To set up the Azure Metrics source in Sumo Logic, refer to [Azure Metrics Source](/docs/send-data/hosted-collectors/microsoft-source/azure-metrics-source).
34+
import MetricsSourceBeta from '../../reuse/metrics-source-beta.md';
35+
36+
<MetricsSourceBeta/>
3537

3638
### Configure logs collection
3739

docs/integrations/microsoft-azure/azure-application-gateway.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,9 @@ When you configure the event hubs source or HTTP source, plan your source catego
4242

4343
### Configure metrics collection
4444

45-
To set up the Azure Metrics source in Sumo Logic, refer to [Azure Metrics Source](/docs/send-data/hosted-collectors/microsoft-source/azure-metrics-source).
45+
import MetricsSourceBeta from '../../reuse/metrics-source-beta.md';
46+
47+
<MetricsSourceBeta/>
4648

4749
### Configure logs collection
4850

0 commit comments

Comments
 (0)