Can Cortex Data Lake (CDL) be leveraged to collect and store Console and Defender Logs from Prisma Cloud?

Can Cortex Data Lake (CDL) be leveraged to collect and store Console and Defender Logs from Prisma Cloud?

9676
Created On 06/28/22 05:58 AM - Last Modified 06/28/22 06:08 AM


Question


  • Can Cortex Data Lake (CDL) be leveraged to collect and store Console and Defender Logs from Prisma Cloud?


Environment


  • Prisma Cloud
  • Cortex Data Lake (CDL)


Answer


  • At this time, Cortex Data Lake (CDL) does not support collection and storage of Console and Defender Logs from Prisma Cloud.
                Screenshot 2022-06-28 at 1.54.36 PM.png


Additional Information


  • You can configure Prisma Cloud to send audit event records (audits) to Syslog and/or Stdout for Console and Defender based on whether you have Prisma Cloud Compute Edition or Prisma Cloud Enterprise Edition : Syslog and stdout integration
  • Currently, Prisma Cloud provides the following out-of-the-box integration options that you can use to integrate Prisma Cloud in to your existing security workflows and with the technologies you already use : Prisma Cloud Integrations


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000CqEFCA0&lang=en_US%E2%80%A9&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language