From 57fc9d30e6578631dbd475ccee96ea2a8b833c2f Mon Sep 17 00:00:00 2001 From: Meena Kumari Chatla Date: Wed, 15 Nov 2023 15:44:01 +0530 Subject: [PATCH] Short Link Update for Parser URL Short Link Update for Parser URL --- .../Connector_Syslog_SymantecProxySG.json | 2 +- Solutions/SymantecProxySG/Package/3.0.0.zip | Bin 11707 -> 12043 bytes .../SymantecProxySG/Package/mainTemplate.json | 4 ++-- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/Solutions/SymantecProxySG/Data Connectors/Connector_Syslog_SymantecProxySG.json b/Solutions/SymantecProxySG/Data Connectors/Connector_Syslog_SymantecProxySG.json index 8a881186775..f206e9a4fe3 100644 --- a/Solutions/SymantecProxySG/Data Connectors/Connector_Syslog_SymantecProxySG.json +++ b/Solutions/SymantecProxySG/Data Connectors/Connector_Syslog_SymantecProxySG.json @@ -62,7 +62,7 @@ "instructionSteps": [ { "title": "", - "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/SymantecProxySG/Parsers/SymantecProxySG/SymantecProxySG.txt), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update.", + "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://aka.ms/sentinel-SymantecProxySG-parser), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update.", "instructions": [] }, { diff --git a/Solutions/SymantecProxySG/Package/3.0.0.zip b/Solutions/SymantecProxySG/Package/3.0.0.zip index dc1855903d2afcdc714d9844751a545b78010667..ac062958156e2952ad00d4393c264a7e59b2a17f 100644 GIT binary patch delta 9527 zcmV-7CCJ*lTZ>+>w+Vltd~a96HDv6SBme-~0096I0001OVQFquWo>Y5VRU6KYIARH z>|Jeh+qSa)erN7~!04PivOS_L$+9iyHkp$qP3vjiZtS)n;*1NCki=t(WC_Z)nv?&2 zck#k^kd*AyZfl)0jYI&8#p2n;VzHn<|M!0p()lO1=WIbcPe^}f9>*bnvbQIn>@KKJ zXKcazc$faZjM%OnEL0ia8}(}*ou25x4*VF( zer6GO10VYt?Dp}0s(is>>d+WD_>2$W5naafAi}C|TssPQFpY^t_%aNGDE`+%KSPEj z5z);8S>V{}H1L0xF?2>^#SobW5jkDKh+<~HkAj=k>GvIM_(k#%(ue{dz+#3AFR*DW zSyqqWVY~_%cERJw^=GR<0 z@9JJYWoeZ}qG)kDazn*a=WP&^C1*~LOqMb68FQFJ;(&jIlygF(g%!t_AORkeUtg4x&pQQkz+t&0op&+_mS# z<-}o;dj(xiqhKMbzkW`V1|7}!7y0Fjo~JU&cJeI>a&2*a1Rz3(Tip+ACa@6@iCn@p zT=d*iQOoHHYU?J(vrcf&+(HhyPP3?yL zRu2|IsTnPeB%}UUG;-<0V_EIjpg3`mq%eS7Nk@O0Lred(xEhBQ;y8FR59?~e{sk(%jbflytmYv8(G zu5KcEY_Q~cKc`3u(G@cUFtFYV* z_hC!8i+a;Ze>$Sa`<64Njy0MbjI871{ed+;m^hQ81Hk-ozX9&UR&XDh;XZ%->Tn;n zhWqe=!hN_7+=mYz?!$I)FAZDwUL5iUBj(=5Bi6y+@?cAKNmZ#Dof;gDO+|^4=pc;e zqa1TN=+%1n5=Oz5>p)+7N?eJ~Xn~?Ogl;AzGwcudWy~FR0qn|U*O{s+3}@cumlltV z(vw`YyYsP9J*+gwnQiE>kokWOf9I!S5zp^GjG}Q!?Mpf<+M*m9GBMjv>BwM;fU(%k z#s$@obMeN4zfMr>#MW{r*KRydPa>}5e3D#zO;BA>*VmJj?~r``W16HRCA19ejEG8? zy-x)q>3rcpzT^uNausD2I;KCL^FOnYZ!+rjOF|YDErM$q21@EVu=;=dmFk%^xrLp` zM+GZrZ>quxflJpH#`=5av&gl7I;p5*Qi`NP0{ov;z_+>{)O1Tx@r&vpaiLx8#$Lk# zLau(eoOmvuvnbofP&cF6Z)kMs1lK~GXLCkA7Q6ejrB(6z`g(T~1=IoE6Z#j*wGV92 zYQiFmE7a}zEXK*$n}L7&UDMT`I5DvJ%%Z+yQRj;KHgjZkW~oZsgnC|Z&B-cQ;;9v* z-1S!4z~IyLY*VvFykN$qe_;_YuED#^XDivqGb$(eHY+|T-h|Ff;_-=*D&MMaa^f>AJ}h8 zHxj1wTMELB)XZ~6zz2zd2BE;ST=1Y00W(gC3;~e|<;;;!enb(HS4&@<6RJ~2D5M-K zL$j$knbHf8i7|f=Z8-lw*>Tw%>QAL=;Rg@PK#BF)&sh*tPcBUnvl*V;R`)B~dThp| zEvVNQQ5lDhe6A`M!%lUpFIA5}Rm*`>SgzPD1W{P7&w`K)`s5|^U6_=gIIA+IN#oxP z10&}?`Hwn4<@UwY^}yC%!1}fHV)FDU>Aw8#?a6m9yRv^CUoIA4=6(nL3YLDnwM{0V z!Te$gy*s|F6HC6Z0P9?sL}%c2!|}iHT!iw;`}-2Yg&VFn{xzV3a6f|;cO%$n_u_QL z!J3k-!q~U#)Q9pI4|6^!O*3f+4m|V8is;N;F!Gcv=*<>>6-zSMXJ@ ztcJE&8$6a&HP@^JZB0Qnp3$fX_p-)})T1M{$!$D;)u^!kEr10w!9@sn8sKP)tT}dr z2{(VzZ@zLVkyhWR+@^7_p;wq~7cGU4cp9^CBhy+K+OwUVx9`rrd$O}b&gPh+myblK zP)$p}6}}6<8{Ae9jIz0_%SSR`p=7R>2vxl!QOxqMGjS=q24<@VzAC zt9T|ZWx3r$ISMIYFco@%%33hOh3dg>1=dmVU>@)o;k?DSu};M{4w-epYTKd?vQ7OJ z37~PL;-bXGeTX}C!G}%8jS!AuGq->_$c}Kym#~q99TdHUoy?$b4Gze{^_MaHg1LXD zxYXkgkWP`sBqwG#cC z_L5>q8MUr8bG3$!ROcicD<>h57xRB0fc>g;3Sm}DvU^fzDg~|fb}9Wd@Q0t2#}ma< zGMCRWZb^iQ$o))Uq8a!xU#le+%l;dpphk$1D{op0fvB;j`+A-icoR} z(Bi@YPUqM17hY%=Uixy>RA{%3mR)gsa9{QdVKt4TW%=+<(3S-s~>ph(3+vSxWYl7fuXi60gfDyYbS zBFzIQLn7i^>ipS4y~)x+)+5&vXZ%b(z};k~3}YGDpERCleu}+l=68~*kskscjaWjT za-&cJz|!x|jfNSRKgur`G54-IxyWG%hT}6zo6{TuIItM2=MU^$LZj+*=Xh?CJ z{I`S|ol|MZR47K}>(g;^H!4gSd7mnDzsiG3-xW|j0?k^20|Qf)H)=1EE43||QP*~j z+<U$&f5J{)mk6WRW`*!L%T+hX4@zea4J$SO*g5tH8(aEn!t}uwxZ+Y4=C%7 z%{0;XxwLH~bH&;v9xJl@)+4a4ebY?~uPR71@orc1HCFKly?UGTx9dq&W=wCIfoe{* z{_B6a47b<*Mi*gi)ycN4b_p6>fp#vy`b&Rqxu{<1o0jnnu+bpikzHy9;heg+Pn^Gv(avjYhUUg*swP3+Y{KlOg!r}z?QIg-9~0RBE(z=n z`QhbY#s>M|t@6Ov$^Xu83kt|JC+n66vwnYa?!!yUtrLdbF8S6RvT9DYtxK|fu*tQb z+KaH^-auJ&o7@xls;Tj7-4AGvW^Q~B;HwU@ZT^4VRM+Q8oAaaV^P=+-tJJ&a@FjulaG9-dC0|a)Zn%`pRa$> zR6OPtKjszRLtgRvOWL0|f4D_jPPL6}lZJB_`N1vhNcu7GfuFn21ODUle_Kpe`l*ox zep*dnrutpx_crBCuA5v{lU`Mm-)QDyGZ<}@r+W|ixepjcE%R?52!5&yD(hEsymtO< zsmpTq;2q@2uD$-fc+7`woe$eW`)+@+;BJub+5(z2Dzp|NH_2mN8;p}|suKCWZhwyfyl%M7kq7O)OIqdRkVcH(=l%vluB8r(KKJB-ZL97w=WDo5p8NVx?S+m^g5SDz zE{@10RL(mxa{Ef|gI0Ljb}l6C_0Ky7UJnlDRS(+k&8kBX;-x96K{2gbyVl=ziCY@ugq0WMGp^3-wMk$WM%*b*)DQp$3I`sfB$ z7l4mjSs=hrS(2X~Zo)VcKntR$i@BA+UDcgT4GybGe1lAL@ zbn9Q|o&OmEyn6rYc6)KaleaP_O<+lqG*bi$_9XJUC}H%{g_Ex2isk!xz7by+(v^Ek z-05^n(tyd0VlF71cPwB-|C5k}-etalAllHFFDGgQqDF5B%c*ErV18dR&r6zs$2J#Y zACc7<{!vNU+b-lBwCxy!h~T}C>B zfAj|j%2LRj42xdVm7Fdmh>T>FZQhO>VdKF@t~SoRn91IEB=6{i%p` zHTn!;HnV&azx*!$09B4N+n698n*Wwkj)Klpt?^R~DdG)2u4>$HZLC!?cv8FNC9}12 z$MvTwuKIXwOt)Dl2R&)Db}qX9H09$wUK`u!+E{~KDBc$FCnt^N)-m2Y9CzTUYqc31f)lJ9@WlYcx}F6ihlO5h~<@>e=u z)^NJ-1Lm@><)9<}lz7n-Y0!{{h~>sAk`T}~pU+{vth&ft^~Qm5_4#+=)>Oxh3lRMt zkcA0HC?J{XSGq|)SrPH)Q-24av#0Yb(f^crMX-m%TQKlD6t{D*@7;4>T(r^xOmCeR zFP!U6RCa$PCS;W_iz?-OX75K5U<)Lch2814^7 zwmlwLBl}=tjgAgR)_DJD-?9&n561`889IZhAkcrR7aY8(fsup{)Sof&SaCi=GU%U6 zz8#gw`UY7VACCI?`J$@pykJ>Xra7Yu{fzDP7;+T$Rr})eW5e^o*if*4XlgMU8A?X` zLqkbAt`fDQp^1ax!Lf*Kwz7w= zpy4pjUEsS4#Iv6GzX;@r--X5e{5(3xjW>T78o<8D_m*KkIY6a3AJx|+EujQ6~t^7pWqyF>=?2R=Z9D_9) zu!%KxhGT0yMm=#xjy*WuV4`1%XyOMEOe|tfmJwNaUsIl)?_%`xzURGPsPZZb7Kwkn z&&ziHD?#IEI2{~0$9;>^DcFF)m|4g6(UCP7u<^w1AF|10v;j2EMEL82%P)(zNEDEy z+G^Y8=Uqk+<(pJ|q<5AzM{jVP;-svz+clkhR{ zl_xD46H5^6<)&dfueF6{S=yo^$F~>AmzQL_rQH5I>o<;%$16`Zq?6$4?)&Ivv^{lz zVNM6iz$ne$@7251Is4JLd{-RNeMW!d%Qjx#=^eSIaQzYLb6W7nb<)}wKC(wB^i(p3xJfieC&{8uiZk9-ti8pV3cZGf- zc92_`<*NN)fs7jL;`<)d+s!1LVP^3^@RxK2D5rK5req~W;#2**Dhj(2V} z|HP=B;8C0rwTA}O9zLSB9cmM{)VuTkzrCy9Z5uh_{}<>xY}G%m1tiN>YotBPLLJ*_ zg7YPU?JEjgf`F1}i3lkQBo)QDrs!+*_4*{8nf>6B+~tRC$Fh$^5LkcY&VJ19%~!o?y~_{N9#0e3?DWeEV8R(5NnKH!kw+n-;NlLNo)`wkm4{hl zQnHtNzW+`$7+w_bYq*TD<;8tNIOJF=NO^#aGIk^|?97p#L<5x+5a=FPo? zaKW!%X&*<>iPprlNpA$WCk9ietK%#%D1=mG6Pp^Zp))w|;Rb(_cetNFDp-V@mtiy` zHjx8MIUY}Sc`I;StD(;511!aNZ<2EAs{T3{RCk!OPQu0=Cc5Uzn=ic^P(jN?_0FFv zdhRQYO=q>pGB8PH0)&2hrcHrN-F?}XZQqU=rj^H`W##ebomb}B+lDn1dX|7IbxK)Z zwL46DD=ty*hp2zuWAwgSr1;e-_$<>OS;@l^k9>RKb>UQVK8ETyu*IbQn@H^8&PnV} z?-fj*t8ur$omZFb8*HjZ-!3%KE-(FX`pKP1tr73MqS!_m*r!pe>Ud;j@fd31UKGJ! zT19XtMSwIY|KrPd{}if#4$9uWygI-92Y+E*mDE=bRce3X1ig4YceU^o1U(8j7kIFZ zS?=$$;QzH1{5uIgGRuL{ZCMA1#&Am`i7>tuNAE=>lHfv->R|8!Zzu23^#vxtbv?m8 zecm@OJ2(t}tZSH`ze7gj#^k#X_=V@zh5q5SJC^k<>L5P0YAj98c#IHP(9Y{0>;9#Q z3>~!R<~4tX=>9M7V7?a8n)i1~a;R~Ir-ZusEuNChYF*?hSzhQYzxx>*Wkxr_=*R*| zpP;ClPAF>2{JyxXgJBz_Er*z%ZBaTXCt*WE38fJUEFKo?3E7M&TZ;aP<~CN^RrI7i zOWdFM;iMm+FX2cSnkb_SGAV)TSzIw`CUgf`>z9A@M!vX@9=Ht#ALp{iW#8>1?cd$ui={c5)^m7QDZEUDUHBWsuPw_jw|Ke)HY7DK8d zv=<3Mt&^*h<5;Bnh;R4e&+{Xu<$An>rY=WJMGZU?j&G;HB4{s2P_XxIf;Qbhf8fbZ zRV;td^0Z=jya~{@O)|%jPDtGG0j}4M7%9@@JWGz0dD7T3smm!zd@55^I-Qb(t4d2XvV9ZevC-sLeXi+Bs+I|`N^R4c zR#Ra46wR(!>v&4hG%+bwM2$_0Lvtte8VsT=a z7d{d1%~%Sh)}w!;;9rwFOY0`=LEMB@>T*f@Ly0Qi z-ZE6?KDK%eljQk?b$o}_rfo0jb!vaDbmz>yf#rpJ{@Ee*S~FLdhVzfkYJ~^2O;_L!%nrF0 zYT6WbZLr*A>FP1VM`KFM=C{@=US!c?up(WH!8XKTtMs4#vqkmlqI$JdMIPC+YKram zUe)lPp{9)>zDD#7HJzkLUl>bm;8PuGaC&n|k3o{^|1KR9U$H$|1i& zPWsrhh5U*wCHm(A`JI0na6XU6On1@w0*{T3m`|L*WPs*yj*tv~AI)WGJ zu<#X7HQA~_k*t) zt5A<~ErhE-^?24oxW;rXgnJhVckoRi+<|eHs|Vqlm;J0UE@RE-As}39VJ(C!(zOt7 z3*i>&DhH`f^I(4vZeDt~hH$soFW(KzE!4armRq22sPZJ`17f)nb4;t*1j^kO*0Cd& zpUVbbnLckYej9{}U9Bg+7cboCEK8GWHW@ay%PO^o5lN{}`mG3$+LSr`|Z1mX;p!6HGh4q%O<@SBVw}ySF-mt$K zy|NfbIWP{O2$S6nb)@ZC<_s27V>SbymzIAHo4cLIY9*g#$jeh(9E zFW$_1vR!}Bmb_IGwMTwuP)Szo8OE`)nB9hJY!Ou7jgx}S*Z=~P{rzHrOe~au*lV7{j#WIA95Kdcz{z`jV<0ABgY79p2jhVxgamOtSIe>W+ zq8|UyQ;^1@wZ(8hP}8PjY`(nnPcN^AMDF-bVF(XM<+lko}9p)fXtl zMY&NwM>UsV_6448gIGdh-e0wmNo}RwSLD&Ekf)9JJ(=c|nG2Si36_`#77-$|L0z|y z&OVki#?Ge|#tN3TbtVtfMG5{?177y1zaoLX9jo$y!h+t?fK?%O@U}HKS;2`U_PT#p z+S-X6EVVDQM&nQY`d2_o_D0mYStK&4zeU@jwpb4H>$hcKXp8>S27%moQJjqVCh3e{ z^$SVAZr*C;TeOZ+`>>|Nak?AuUlGp?q&w!Zl>`o delta 9188 zcmVY5VRU6KYIARH z?LBF88@H0*^DD4?yQQNz;-TAzDvFQ9701?EO0rd!O95vd^%I{|LX~3!Nq7D8`Dv_--8WXqXU(@Y!@4#mV;*{SC1Z zAVeP%?4Dzz(L`1SF z;hI16lyHCI0DCcH1Y{N*m_`&n2h7F4*4i1Ptgq?vwT+E;a|WFst9?vX?rJjD-*sOk z1Pleczl=uYIHbXK;=3GXkHw5+(sT;4;)g823FR!AP3>bCMA7@6gK(FbG%a;Ri`^Wt zX(j@CkjQ=-$I=K=@xG+7PX__ZNw;Qz7al?rnvH)ef=E5*=${T(_&Za?pX-sfE{ZVT zroF7MWhHAHTDV)FG5tUgtWJwvq}B2O#m5}1wC`7PQd(uzR<4)RyxXbXg$gtONfZwK z(F?Cv2c}dlk6NxMhagTMd=EizqWFo_{&V`MX_D{HQq9)4hQK~RMI^x+CGju3^*H-; zEfs%^t=Cf)3&Ezr3urMKC%ltNGGA+xyb?$YKnt`<4$3KWXR)7LryvSgA(-5lY-1Oy z#YmrdgsGv3UY}2=%tiL;#VhBq5tQMNqw>2Z1@|NK`4Ii zrKW_LOv>&6R`X_V%1sK}guZ75H1cBG-tB)P-fQhO&s`IL5Q+Y&L|?(MHWy8w=5diw z8Vy_aXPa9+_9A(J_MFA(gxaL6RBise7f{Z%UaR!2$-9hLbvOl!;*`-COv@S}D^SIP z%|#KNN`sF(@}Su!M6W>XfKvSG-kx$`rp1X`9ANOPhZj zPgTsSh*#vRNX;UpwRK^owXRT0?ccSHQfgE$GzCe)>ZOIF+Vz?N^E+Ygt3e%e8xhaT zu$icD=Zw8Dbb(8@+*imvsnt!tH(Bzl_}+#LTn(0%0nKJrDKL?%A_rw&FHQ8`u(fiF9T~r$my2BlMxb1ic)N^(QyF1R|;dakC*d2I-{axVp!)`sJ_ZxpPdf&?E z{m;(m{iclGzo(4eUx3m3_n*=G%^1BrYTbEx#7hjA2TKoFyKAdst<)u^QZ+a=w$$&F zI`?2SZ^eKs&a1}zlW81X`X2PtQKU+RCG%&|sh{(+^t=6S=^O_`pI!RwDyyk{Y4-hl zWx2>iz37{6y){aOlX)j|?L2=rWueDkhbckC=eu`~X!fJ-dpauXp8^wPzSei?uwZTg zt;Ekc_|$L=`X zEpYFOFp6g$p9*CKhiS2>DpUHOkA+`(Ccl~TU(8RI>%St7J*T^E632hE#SOGV(Y;p% zy`;#d?ce*MP|82Dkj1|H>x*g?ix}j&Mxytta@iWIK}Emf(7rHwdCS!Elc3(?Uqp8{ z2z)+falVPUYEF=Uq49e!x)O9e8#D5@+}XQzEqYg1S6hQPq8`YakhiH^-9X)34_NGQ z#cQ3AB{&P65s2Frz3zVqN58{I4h=nrdY3eGnJ23=M^)M&Gzg+APOhUF9xO4+{oq=w z6a1Q;H)_;K5RJIhGu3mLHbOzR1ii$^gNVi+Zxc6WsEyniPofEQ3G)kI0WacDkooZF z?hUqADx;O04nI8+y z`2z*o#%kg@BVc620D@3JS*~nQiGa?gMEY~cfO6)^FFzv%$@5t#PV&?_AQV!Lm7&>C z93|;$O%#-gW%)rZNq$i*e zC1EM~C$612WT9Od(h;GfXnotWkQfMhL(
IZUxy0%zIs0b69%y>R=>&8Z}m3NA$KlM56U#`z! zZ;8;akcmlFj$tRUT-!bKVp~E{!PBc}>YlG_%iU<&ytYQ?qyha^6EP~Nl*BV;hb)wT zz|xx5iY6wte>bu(>JDKn+O}-t(h{8^MlbHW1shV|0wje>)np z&LD^eoe8V~EbeGGA@7uyppHEHt$r{4-by|s8*Q8tK~VIb0>aRbrm--w+OT_p?!(-gl=!$Y@rOQOn353XAc4)@1g0}jtQmiw z!NwAHRP;S;ZF*g&w@W5|I7{Fcunk3<0C$9Rh$yCUjL7fMPH64UZ0e!o=<}GZ*Hhm` z4BKMo%SBkJ?p`v-DBXs6{%{Dh4L@Oir!&MjjTw!Q>Y-wLO%bt|8)*w+>pVOUkBCwg zSp_!=0x2|62&57qH#c7bl|F!YivE8s8_Tk8s8f=4YO>-#tErjyj64}f5$s&0%?Q(3 zq1%HRJzGY;Ua>VBMj62u3ZZlog*XyHTk@M9C%~QL7wV2dXy%|Q0GC~`B9vAPcOrop zsUWx~6lx??YGZR#8HJmhb>@PJPEBakj7|db0u!HW1zP6)nYPB|c#m}eW;mO+ay4JO0D~u?wphdEWeP}jxEXI9aAbRNRRWcFc zS}2^xISv*{062%A#S(a;&3k`o?NL{`bcJ1Tg%Sg*T`kpGoBLq0uuB$8-|u-yU<|*8 zu)E9hM~HT~V^#usvANX!qAy|JY;LwyP6m{qn+F$ty;^K;N^1d@2>{>UBB#3M@pKBt z!hoURx_Nkr=j2+;H&@Vjwp8WDCQI@o*xn-Oy%S5+DZONM>(d>W9(jN1hJAe~sdK7G zTPJeO*?qnM-+;?u3X7a3%s`m3LCz5TEDTO0f8yrJ7fgb^{}6yd|0JRbEH?T`7ZC(Y zoRK2S6_}PBkz?0ooFlvu9)lc_=TSVNiRL2J>J_`f4?DnC&%`!_>TQHb?D6HQB%2bM z2II2;ZDq2%r8rTnThxE^BTNuWpmWp&C`R%aX($`ZNEu*v!PQgTV@Y-wiyNXSYsf<& zQKEZ#G(CER+q$D3`S*3)Y;3@P6Lfs4|2nvT3GtWf_*3y;?nocI`hgjK&Ipww$1fio z_Q7R>_Kxr27w$UJmF-AZwrb}>Z=(p0AMnGUvnbiX@9S?EZZ&`6jScltLXd7c@x!4) z?i3i1pK;{nK*W4q9Vj~}FL^kKdh9#mxSpvGxG~I?p>HGqlP2TbPqD4c{Z8X8ibKEy z5JyN-VHAphJaz`xi5zy!v%fz$mwr6sifSL60dS}b4C+u&c)m*iL*A(=jc>t0ciKFaWV-ugxe~_BXA;1iQKZIOhkV}#99CWw9$XEg$Gz-I4@3M z5%Xdcc91*mLP)p%(pHr|0~K|Wew7Qi+7L+}5EeegBi>Ldk_@_iok_Llc3yj;nCk;- zgj(_OHTRrXzLjegf0s0IB~;`Fffs4I;QaUxTR2wQ;+7&-blPbl{Rd;$@LX!0gV-hZ z^d}Xw+9`ho>g8~p7v%vsi=dcqBI~U%vNYDQ5}h(PC$IoVhtd?L$5iq12Jux2ge0{s z&_-jT9h>H$gR)D$HmatO?O+R{dsmfogRPV$;Tw_HXr;4nM#z}YdXXlyHbO*Y%-S#k zVTc=GQb8D0V+?Sqo%D@zc1vy0;x0r0%BEX|rX7F7!0R<=?pLOLbHoC{7r~Q1+j&Y? zvBV8l!)f0c8ox4xt`^df&CTX=WUh%4^ivTYX~|s9S6o&j==ML)Q3x%sc=lLxHl{%q z1F5Z;RWd3{2pS^s7HYq!2Kz40Y>K&VBWAj?NG}sBeg76^Ye029AVUcAvJu_3(C2T? z3b=ocDUVT5+ zs=PZ2VQ(I~{ux5nm)1r05Ou4XnirDZFs8ggEcq&i{BIINULT`f@jNUZlieg1dx042 zf?;3eSZnC4HPxnZsO-H9k+qYdStzX4r8Ivx^tC4B^}dF>zH3Oj`e^+M$(D%Dzc*3& z^E`~pM&I9usC)Ya*TyPaW0Y%SlZ)wob+O1zVvtP^%G-%KzQtJMWnzq*#TG9RQ#?18 zcuov)z5A$i&{`8CY?!eHVuEio7PvG5E04|%iJPYkR@=fp8C9KUFfIh{qixg_my*+#lYSJo-uxJo;9^#3~RZ&N;KciV^tSi*;X;Bjbl4FTniWyzSjILrvS22I1Ur)^Ft;CAjJ(P>xC3PPz{`syvs9TSQ`CK;$ zTCOr*T^)GqR|lenN2Fuw+qpNedjN|@ z(U638_<#KKLfDiKf(Vvh`4tb{9w;MKebMKPmCtBzUPybhSeDwI7rv)HmCpcmgEc5z zLtvQ^nih$cqA*5F6im^4(Heikl*VYWcR)-`NCjVMpq6@;GJk>GUxbe1j{OU1qE=v` z2~wpK)JGf7TmS~Fu|P0`u_RqRGMv{4vSQL#UvT0@Ew4yJ@|eh&&BE9AdFvrEQodDg z{Ar^Y)FsI0`uFFp|L6mIwZC6mYbOy;?<`K6!15zuW*jKclbpAP6h?m&Tv*_Wu2{ZZ z#2fkRLfUDMi9Z~!OBgV@al!?p^Ogf>=>Mc3p?4WNAb`$k%x42N0#T#ghow`rD?djz&Ech#3msxF**{aS|TDzH8S4!nu+5dMRQ?vSL^I-<%+J8GJXSV8^{QFJ#@gw2-Am@p>iq5TLc8u;&r>q(aTl5E1^2Xz z>}6Mb*wr3(wTE5pVZW9=?EJl}dCzLvtCj-2=kHC;d(zBCdUv~v-9nkgw!P)ji`l)} zi#EzZHtjv{?a=B0H{xy)X2mG1kkru*K*GhOQ&zN=H++dkFRZ|9Qqk8kE^ zxB9N{7eCys%2xGp>l(Lj!-t=9O>gVPH9m%A(2xdf%F#bC9z3TuiqVr>V#*(ZnJ}0K zNh71^DjC>=Ya*WZ{0nTxwhmlG`%wn%z#c4+x!W?a8oPhqIuAu^lcrsktzAyk)}5%x zLkxDRBxWt_tuF28E7O4}^+dp#&25WWzk&Z3^PWmVwmzQgwfnsF;Jo!JN*F@v^tNy> zbl&noZaEaag^I{~@aG|XR&oNrN&tTTGe`~R7tl5Zl;NtN`JQOd-|p?W?m^Glad!vK z&i?L>bFhECzwNkthkFOR)a!e_p#adR7aY5&fnI<&G#oMUSz*3|V9>&rczY^9^cO_w zU~i|3|9n!_b)2oNDno`*a(=`1dJF{!+p2x}`=RA~@4!;9y=QB&vtudQ+3s6PvT;?Q z?e}dM^mh+!@b z^Tp3r#K|-YF)d0kMnDHFNEwDGjuBlc{@gj-VcUbjfiv9SI|L@(q0V9NVBqxk54?l! zL7%#NdrR==PZ3W_7|2|?ry@8p&$WFNL#_h(5Gj$`3Zt6^i7!K!vyT|MDtlNHFgzCc z6U=}17vI|A|H26)ewUW+^Yi!|H_f1DfcHflwRF+R0V>IPtNwiOfChm1JEOqlBM{}R zycW8d8vqEA1M-WN=tE)<&Ky4~^wk`9>!&@+%qqWXRuw1O-RTbZLEktBy+hDOJvML- zy#9f6aDZ~+?RakQaEXb2E21*S zpNTd0`@`P8ci43(9fA(%9Wdw6-QRZxJ$5i~yL)Uf*jZ+c60WN^K7U`4Xlb{dw%f_I`-Ojb z{%qpRZ@!y0->WpA({w*=dXWBgSjFKd;Ey?wdfi;JTz!~tSZ_p`fvN(;V+?LbA65~x zXiOXduw9sjjiS_+n&n}OiX3kVkT-$kyQSRyJIgnYk0;lGY)A*ukcl@QgRUl)<;jzz>Ue1+~e?lyx4AV%QA=jz~QYu++?olnu#c;=-zDmuMGa2Ze=M zuG;sOkx_zuyb?j(2qxJXX2yjbcT!?P(J%1d{)+#a@!#aqVIQWneCAlop4ortVZKQX z`~A)aLP(Mnvw zhiwaL_gLMH_!V-m7HXFUz{r1=6~BM)n6*6PS;&c=bez-tl<#IUo>gu*>2F>F5uV}! z)TtOV(kMbNxQZXkR|dv7^$|2y6nW!Hl!XfW`9S1X*tu`uJCGA4-3tJb-LR<}ufw z&_MJ&p&$IoZ1Oyo(QZ%uk)H^^;HOVwA17QVxglmldZC;C&8O^IxZ40$z%eAetDv~;*Po-lI_b8!(@5vS}c#9 zd#}ukk%A2rda;32>Y`?I)lP}N^S4I5@1l0+c(ZA>#otcB7m0qyN*+u+aYGh{`evH* zE>ypPEGG58h{W#RJBhv5dj-=~(70QWw?WtK8*Hj3zg<{FyZnC;MDBa$X{~Ypoq@|J z1N$;+RULmri||$y!NE!q+(;4V^R|;Wum4M_0&!6G`iIkJZ+?>>tX4^Lm(jLZF>gc`di4^WaRjb$E z$5`Yo5xzi_b3K1wp(~2JX0t=O!5`-}%-c02G;U1R-eHM^)`t0!*ge*GR&|i%tp=uv zdUHc}bno?#b^o%64E0v$<_(4D_Jeog8^`a|Kxh!cQ`36!D4rT%jRJY=po5LeS8md zTON}1nZ19f>MB_mCLaIyG^yOzxt`!ZB7ea5VgAc>8ri^$#j3?YEI;Bqn9>@n5Wk9tEXn9T=j^h z<$gf>(TkxrMvA z=IQA2?OX;Gy>y1>{Oh`O>m@GiYT9&xb>(ZjKY*&I0pH95wz@;$_U{mQ_5n>vFv_G` zOK5+>Gx?JBg?^Ti21tFLJ<~|=_qTJqK%U3$)eQp`mN>@8&-0?t@XCSw2;Evs*0^Cb zifh^;wLD>VJm|pm598c(E3gA;j+QQu~pK^K@CgN(s%)9^Mq+A01nmt2;e9!S!V=#mT9Z!GG zdOulfo`9Vjd3Dv)!({^0%cv?HYR7?3*We+V@)g!X%&I?|%MMBGk47whowM726dWI) zjj53Ws>PWmJv8Z>u+VRBw~pl--9hd9&;`SI!JETV2ZnV+LDJoVvAA;kv}%(+fo!(+ z4UG(!kDEw{C!($m-PTh!1jB(nyQF_Yi#7tu1nd4nr&IC7+(Pt|ZS{k7C@8jz*Tq|A zb2_niBtT^E1!HH=XF(veoo(kNW&w|NwN5O{vF!oL8$Jcuh*U35z8Im7Ew5MQ8WibN z)M>Xsr79b)oYfU)b!y?Fp=9@1=gp~G_F9);YAV^>)!UhB{GJsw7xaBLw;F$QR$zgI z3phcW7~u-S$`QJ9gs$$u|MGseCiPWpZcyJ&G@fxUOq{)#sAJuxc=Y330E1TS!};TC)^W*=S{uj&G701 z`C>PEVt4}j9+Szak_8#f#Rz}qo|7@B&T z;-EwMBU%7+5Ct-s4BpUFXYk3{Zj;D|HRj$~0208mbd8U7WJrootEn3Kxp=o=EQhXM zO85*8z3Tlx=?wwxqPMS|hI6)w^w$^K0{$OQ*9z;PZbmi=P&oR9`V|lX?0qzi$7OOoTprG(CF6lQ;@TNBA_#gGU|p zi#%eJqchclsghiGzOty-trhfZn6d^yoZ< zApo8R^scV1wgz!TJ>k; z9v6(IoOC0`qss{(Nvab=qz{Xe>u81}0`wVADk)9>_doy3iNd5911A!YWM)zo`c_H= zJ&(VJAXmXPk~e>=e#YE!7y%&kbIm|sWiy?lBFscO7<^5Z6H3y2hHDZ@x8g9uyCKB% z<)F4j>J^VB3}gAA9?W7s7lJS!KE|4x{LsWu!uwrZAl0(j3D}4R9VPn?ehq}noCXdE zJFp>4&xtIRvyz~v9%f`B(#W!W5Scy7abe;7}fQphM`k69vVY z78iVFKA)WM_S!^Ol5ZJW3ezM|bFp3tg(07>)6clhrWM5C_1IysFBy$PGC?_}gJ_l* zcv;NbzwCdCrT{Y4Hb8h2c&$>nBq5?(v*y>RbNgbgQ7BiOzfL!8>Bgi0w)0v;?ZOl0@axVOIX2IaF=E8r~=D^u=-zrWWbIMr7rD5mVLc;Ex zw*oCDa{+`Q5TQbt+L2TqpPf5|`d4l1aj(8$yA;yable-~{4SAowHWI4-XA;u3nY6i z7r%0c!!RG0FSlb)sf?dc&t>j9{oTTPqBoBv^^mImtm}9Al`Gql zmvk|a7h&K=)ob3;epljAU|2 ulW{Il8}VdgS04R9XGJ3b0I~f501*HH0000000000lie;T1|cl~0000mQ5Met diff --git a/Solutions/SymantecProxySG/Package/mainTemplate.json b/Solutions/SymantecProxySG/Package/mainTemplate.json index eb18e865e9d..7f200f5fd9a 100644 --- a/Solutions/SymantecProxySG/Package/mainTemplate.json +++ b/Solutions/SymantecProxySG/Package/mainTemplate.json @@ -170,7 +170,7 @@ }, "instructionSteps": [ { - "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/SymantecProxySG/Parsers/SymantecProxySG/SymantecProxySG.txt), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update." + "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://aka.ms/sentinel-SymantecProxySG-parser), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update." }, { "description": "Typically, you should install the agent on a different computer from the one on which the logs are generated.\n\n> Syslog logs are collected only from **Linux** agents.", @@ -369,7 +369,7 @@ }, "instructionSteps": [ { - "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/SymantecProxySG/Parsers/SymantecProxySG/SymantecProxySG.txt), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update." + "description": ">**NOTE:** This data connector depends on a parser based on a Kusto Function to work as expected which is deployed as part of the solution. To view the function code in Log Analytics, open Log Analytics/Microsoft Sentinel Logs blade, click Functions and search for the alias Symantec Proxy SG and load the function code or click [here](https://aka.ms/sentinel-SymantecProxySG-parser), on the second line of the query, enter the hostname(s) of your Symantec Proxy SG device(s) and any other unique identifiers for the logstream. The function usually takes 10-15 minutes to activate after solution installation/update." }, { "description": "Typically, you should install the agent on a different computer from the one on which the logs are generated.\n\n> Syslog logs are collected only from **Linux** agents.",