Overview

Before sending data to Hunters SOC, you need to prepare your Cloud and/or On-Premise infrastructure and configure it accordingly so data can be ingested properly.

Refer to the appropriate documentation within this page, based on the Cloud infrastructure you will use in order to ship data to Hunters SOC.


Ingestion from S3

Many security products have a built-in capability to export various logs to AWS S3. For these sources, Hunters SOC supports ingesting the data directly from your S3 buckets. Please follow this tutorial to set up an AWS S3 bucket, as well as the necessary IAM policies and roles.

AWS S3 Streaming

To allow Hunters to receive data on a streaming basis instead of periodically, follow this tutorial.


Microsoft Azure

Many security products have a built-in capability to export various logs to Azure Blob Storage. In order to allow us access to your Azure data, please follow these steps to create access keys.

Storage Accounts

In your Azure portal home screen, click Storage Accounts and choose the account that is to be shared with Hunters.

Connection Strings

Click Access Keys and share with us the two Connection strings available (key1key2).