Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

New Solution GCP Waf #11810

Open
wants to merge 8 commits into
base: master
Choose a base branch
from
Open

New Solution GCP Waf #11810

wants to merge 8 commits into from

Conversation

v-prasadboke
Copy link
Contributor

@v-prasadboke v-prasadboke commented Feb 14, 2025

Required items, please complete

Change(s):

  • New Solution for GCP WAF

Reason for Change(s):

  • New CCP connector

Version :

  • 3.0.0

Testing Completed:

  • Test
    image

image

@v-prasadboke v-prasadboke added Connector Connector specialty review needed New Solution For new Solutions which are new to Microsoft Sentinel labels Feb 14, 2025
@v-prasadboke v-prasadboke requested review from a team as code owners February 14, 2025 07:52
@v-prasadboke v-prasadboke changed the title V prasadboke gcp waf New Solution GCP Waf Feb 14, 2025
"properties": {
"connectorUiConfig": {
"id": "GCPFLoadBalancerLogsCCPDefinition",
"title": "GCP Pub/Sub LoadBalancer Logs Test",
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Since we're moving to Public Preview - Remove "Test"

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

replaced test with (Preview)

"graphQueries": [
{
"metricName": "Total events received",
"legend": "GCP Pub/Sub LoadBalancer Logs Test",
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Remove "test"

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

removed test

[{
"name": "GCPLoadBalancerLogs_CL",
"type": "Microsoft.OperationalInsights/workspaces/tables",
"apiVersion": "2021-03-01-privatepreview",
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Private preview API? Can this be confirmed?

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Went through other CCP connectors. They are using the same apiversion

@prtanej
Copy link
Contributor

prtanej commented Feb 19, 2025

Please align all product branding to "GCP Load Balancer" instead of using GCP WAF OR GCP Web Application Firewall in all places. Please also add a note in the connector description that "the logs collected also include GCP WAF logs".

@v-prasadboke
Copy link
Contributor Author

Please align all product branding to "GCP Load Balancer" instead of using GCP WAF OR GCP Web Application Firewall in all places. Please also add a note in the connector description that "the logs collected also include GCP WAF logs".

Replaced with -

Google Cloud Platform (GCP) Load Balancer logs provide detailed insights into network traffic, capturing both inbound and outbound activities. These logs are used for monitoring access patterns and identifying potential security threats across GCP resources. Additionally, these logs also include GCP Web Application Firewall (WAF) logs, enhancing the ability to detect and mitigate risks effectively.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Connector Connector specialty review needed Content-Package New Solution For new Solutions which are new to Microsoft Sentinel
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants