noodlemctwoodle / pf-azure-sentinel
Parse pfSense/OPNSense logs using Logstash, GeoIP tag entities, add additional context to logs, then send to Azure Sentinel for analysis.
☆30Updated 2 years ago
Alternatives and similar repositories for pf-azure-sentinel:
Users that are interested in pf-azure-sentinel are comparing it to the libraries listed below
- ☆27Updated 5 months ago
- ☆16Updated 2 years ago
- Automation around Entra ID☆34Updated 2 months ago
- Misc. content for Microsoft Sentinel☆18Updated 10 months ago
- A collection of scripts and works related to Azure Sentinel☆42Updated 2 years ago
- Azure OpenAI Playbook created for Microsoft Sentinel☆12Updated 9 months ago
- Create a Word document showing your Sentinel configuration☆13Updated last year
- A set of tools for managing and diagnosing Intune on Windows endpoints☆49Updated 2 years ago
- Automated review process for your Azure AD guest accounts.☆17Updated 4 years ago
- Serverless Local Administrator Password Solution☆27Updated 4 years ago
- Intune configuration files for MacOS Sonoma hardening☆21Updated last year
- Defender for Endpoint☆27Updated 7 months ago
- HybridDevicesHealthChecker PowerShell script checks the health status of hybrid Azure AD joined devices. This PowerShell script performs …☆17Updated 4 years ago
- Links and guidance related to the return on mitigation report in the Microsoft Digital Defense Report☆27Updated last year
- Applies DISA STIGS GPO Policy's offline☆18Updated 5 years ago
- ☆28Updated 2 months ago
- Security-Focused O365 Management and Log Scripts☆60Updated 2 years ago
- A modern approach to password rotation for the local administrator account on Windows 10 workstations utilizing Microsoft Endpoint Config…☆11Updated 4 years ago
- Contains Entra Related PowerShell Scripts and Entra Related KQL for Logs in Log Analytics☆64Updated this week
- A group of PowerShell scripts to check that your environment is ready for Windows Hello for Business - Hybrid Key Trust☆23Updated 6 months ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago
- AdmPwd.E client and support tools☆32Updated 4 years ago
- Workbooks for Azure Sentinel☆58Updated last year
- Repository hosting a static list of Microsoft First party apps and Graph permissions that's updated daily☆109Updated last week
- This tool is designed to assist you in analyzing issues related to Defender for Endpoint on your local endpoint. It offers a centralized …☆54Updated 2 weeks ago
- ☆30Updated 3 months ago
- ☆44Updated 3 years ago
- PowerShell module for SentinelOne API☆28Updated 3 years ago
- ☆34Updated last year
- Public SOA modules and information☆46Updated 2 weeks ago