Enrich Palo Alto Security Events for Dynatrace
Receives Palo Alto Networks (PAN-OS) security logs over TCP and UDP, enriches the parsed events with MITRE ATT&CK context based on log Type, Threat/Content Type, Event ID, Action, and threat Category, batches the results, and delivers them to Dynatrace.
Pipeline
Blueprint
Processor nodeParse Palo Alto Syslog
Processor nodeEnrich Palo Alto Security Events
Processor nodeBatch for Dynatrace
Related Blueprints
Deduplicate Windows Events Rendering Info
Windows EventsData ReductionDeduplicationNormalization
Enrich FortiGate Security Events
FortigateSecurityEnrichmentMITRE ATT&CK
Enrich Okta Security Logs
OktaJSONSecurityEnrichmentMITRE ATT&CK
Enrich Palo Alto Security Events
Palo AltoSecurityEnrichmentMITRE ATT&CK