The following are prerequisites for the Infoblox Integration to Sentinel:
Infoblox
Infoblox BloxOne with a valid DDI and/or Threat Defense License.
An OPH (On-Prem Host) A NIOS-X Server with the Data Connector service enabled. For deploying the Data Connector, refer to this guide.
A valid Infoblox API key. For generating API Key, refer Configuring User API Keys.
...
A valid Microsoft Sentinel license. For more information refer to Microsoft Sentinel pricing.
An account with owner access on the Azure tenant
Info |
---|
While data can be sent to Sentinel via both Syslog and HTTP, the current integration is limited to Syslog with the Azure Monitor Agent (AMA) at this time. |