Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

The following are prerequisites for the Infoblox Integration to Sentinel:

Infoblox 

  1. Infoblox BloxOne with a valid DDI and/or Threat Defense License.

  2. An OPH (On-Prem Host) A NIOS-X Server with the Data Connector service enabled. For deploying the Data Connector, refer to this guide.

  3. A valid Infoblox API key. For generating API Key, refer Configuring User API Keys.

Microsoft Sentinel

  1. A valid Microsoft Sentinel license. For more information refer to Microsoft Sentinel pricing.

  2. An account with owner access on the Azure tenant

Info

While data can be sent to Sentinel via both Syslog and HTTP, the current integration is limited to Syslog with the Azure Monitor Agent (AMA) at this time.