Vectra M365 - Incident Detection

Vectra M365 - Incident Detection source plugin

The Vectra M365 - Incident Detection source plugin lets you retrieve data from Vectra and ingest it into Chronosphere Telemetry Pipeline.

This plugin doesn't support the use of a descriptive metadata name in the Pipeline Builder interface.

Configuration parameters

The Vectra M365 - Incident Detection source plugin provides these configuration parameters. Items in the Name column display in the Calyptia Dashboard. Items in the Key column are the YAML keys to use in pipeline configuration files.

General

NameKeyDescriptionDefault
Vectra Portal URLoauth2_token_urlRequired. Your Vectra portal URL.none
OAuth2 Client IDoauth2_client_idRequired. Your OAuth2 client ID for accessing the Vetra portal.none
OAuth2 Client Secretoauth2_client_secretRequired. The OAuth2 secret key for accessing the Vectra portal.none