Pular para o conteúdo principal
https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image1_ExtraHopmonogramsquarerev216.png

ExtraHop RevealX for Microsoft Sentinel

por ExtraHop Networks, Inc.

ExtraHop RevealX Integration for Microsoft Sentinel

The ExtraHop RevealX data connector enables you to easily connect your RevealX system with Microsoft Sentinel to view dashboards, create custom alerts, and improve investigation. This integration gives you the ability to gain insight into your organization's network and improve your security operation capabilities.

IMPORTANT: If you are moving from any older version to version 3.0.2 or later, please create a new workspace and install the solution there to avoid issues when deploying the Function App. If you prefer to use an existing workspace, update the table name in the Function App parameters instead or delete the existing tables.


Version 3.0.2 introduces integration with the Log Ingestion API, which relies on Data Collection Rules (DCR) and Data Collection Endpoints (DCE) to ingest data into the Microsoft Sentinel workspace. In this new architecture:

  • The data tables are tightly coupled with DCRs

  • Existing table names from older versions cannot be reused due to these structural dependencies

Visão geral

https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image6_securityoverview.png
https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image5_assetdiscovery.png
https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image2_kerberosrecords.png
https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image8_activedirectory.png
https://catalogartifact.azureedge.net/publicartifacts/extrahop.extrahop-revealx-sentinel-c1a5323a-1c4d-45ea-abbd-6211894ac593/image3_fullpcapandkeys.png