This section provides information on configuring cloud-to-cloud log transfer, including requirements, supported platforms, and setup instructions. Cloud-to-cloud transfer allows for secure data transmission between Infoblox Threat Defense Cloud and third-party platforms over HTTPS and TLS protocols.
Supported Platforms
Cloud-to-cloud log transfer is currently supported for:
Microsoft Sentinel (via HTTPS)
Splunk Cloud (via HTTPS)
Syslog (via TLS)
Requirements
Configuration: Incoming traffic should be allowed. Ensure that
prd1.threatdefense.infoblox.com
with IP address3.221.42.234
is allowed in your firewall settings for both inbound and outbound traffic. Customers should add this IP explicitly, as it is the source from which data will be transmitted.Protocol Support:
For Microsoft Sentinel and Splunk Cloud: Data transfer is supported via HTTPS destination type.
For Syslog: Data transfer is supported via Syslog TLS destination type.
For information on setting up a service instance for use with cloud-to-cloud transfers, see Creating Traffic Flows.