Pega to Microsoft Sentinel

Hi

I see someone opened this feature request, Feature Request - PEGA log ingestion into Microsoft Sentinel | Support Center about ingesting Pega logs to Microsoft Sentinel.

It was suggested to use the AWS S3 connector, however which destination table should we use? The choices are

  • AWS CloudTrail
  • VPC Flow Logs
  • AWS GuardDuty
  • AWS CloudWatch

Thanks

@BalP17297154 does the information provided in the Pega Cloud Log Streaming FAQ (which is referenced in the main documentation) help at all?

Log Streaming to an S3 bucket

It seems to indicate that it is AWSCloudWatch

@ShawnBurrington @SatyaMishra could you confirm?

@MarijeSchillern Thanks I must of missed that.

@MarijeSchillern @BalP17297154 That’s correct, the log data originates from AWS CloudWatch before streaming to the destination S3 bucket.