matano
matano copied to clipboard
Zscaler - Managed log source
Add support for Zscaler logs to Matano.
Sources
- Zscaler Internet Access logs (zscaler_zia)
Tables:
- alerts
- dns
- firewall
- tunnel
- web
- Zscaler Private Access logs (zscaler_zpa)
Tables:
- audit
- browser_access
- user_activity
- user_status
Steps
- [ ] Implement all relevant parsers to ECS (proceses from ingest S3 bucket)
- [ ] Build a managed poller to automatically pull logs from Zscaler
Picking this up now!