Technical Documentation
คู่มือเชื่อม Seqrite เข้ากับ SIEM
คู่มือ integration ระหว่าง Seqrite และ SIEM platform ที่นิยมในประเทศไทย — Microsoft Sentinel, IBM QRadar, Splunk Enterprise, Elastic SIEM, ครอบคลุม log shipping format, custom CIM mapping, sample dashboard, alert routing pattern และ tuning checklist
สิ่งที่ได้จากเอกสารนี้
สรุปประเด็นสำคัญ
- Log shipping format reference (CEF, JSON, syslog)
- CIM mapping สำหรับแต่ละ SIEM platform
- Sample dashboard template (Sentinel, Splunk)
- Alert routing pattern และ tuning checklist