noodlemctwoodle / pf-azure-sentinel
Parse pfSense/OPNSense logs using Logstash, GeoIP tag entities, add additional context to logs, then send to Azure Sentinel for analysis.
☆30Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for pf-azure-sentinel
- ☆16Updated 2 years ago
- Security-Focused O365 Management and Log Scripts☆60Updated 2 years ago
- ☆25Updated 2 months ago
- Automation around Entra ID☆34Updated 5 months ago
- Elastic Beat for fetching and shipping Office 365 audit events☆66Updated 4 years ago
- ☆21Updated 2 years ago
- AppLocker hardening policies☆24Updated 6 years ago
- Defender for Endpoint☆27Updated 4 months ago
- ☆24Updated 4 months ago
- Logmira by Blumira has been created by Amanda Berlin as a helpful download of Microsoft Windows Domain Group Policy Object settings.☆59Updated last month
- ☆38Updated last year
- Automated review process for your Azure AD guest accounts.☆17Updated 4 years ago
- A WDAC configuration repository with the sole intention of enriching MDE☆27Updated last year
- Links and guidance related to the return on mitigation report in the Microsoft Digital Defense Report☆27Updated last year
- PowerShell Module for managing Microsoft Defender Advanced Threat Protection☆69Updated 2 years ago
- Active Directory Certificate Services☆22Updated 7 years ago
- Serverless Local Administrator Password Solution☆27Updated 4 years ago
- This PowerShell module allows you to create Microsoft Word documents without Word being installed on the machine☆13Updated 2 years ago
- ☆18Updated 5 years ago
- Misc. content for Microsoft Sentinel☆17Updated 7 months ago
- PowerShell module to manage the Entra ID device-bound passkey feature☆27Updated 5 months ago
- Contains Entra Related PowerShell Scripts and Entra Related KQL for Logs in Log Analytics☆61Updated this week
- Naming convention for Active Directory objects☆105Updated 9 months ago
- Azure OpenAI Playbook created for Microsoft Sentinel☆11Updated 6 months ago
- AdmPwd.E client and support tools☆31Updated 4 years ago
- A group of PowerShell scripts to check that your environment is ready for Windows Hello for Business - Hybrid Key Trust☆24Updated 3 months ago
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆26Updated last month
- My PowerShell Stuff☆43Updated this week
- A collection of things I've created or found that I think is useful for Azure Sentinel.☆12Updated last month
- Solution for Auditing LAPS usage in an Active Directory environment.☆36Updated 8 years ago