Skip to main content

CollectorsCloud Collectors Administration Guide

Configure the Zoom Cloud Collector

Set up the Zoom Cloud Collector to continuously ingest events from the sign-in/sign-out activity and operational logs endpoints.

  1. Before you configure the Zoom Cloud Collector, ensure that you complete the prerequisites.

  2. Log in to the New-Scale Security Operations Platform with your registered credentials as an administrator.

  3. Navigate to Collectors > Cloud Collectors.

  4. Click New Collector.

  5. Click Zoom.

  6. Enter the following information for the cloud collector.

    Zoom_configuration.png
    • NAME – Specify a name for the Cloud Collector instance.

    • AUTHENTICATION TYPE – Select the authentication type OAuth 2.0 (Server-to-Server) or OAuth 2.0 External (General App).

      If you select OAuth 2.0 (Server-to-Server), enter the following information.

      • ACCOUNT ID – Enter the value for the account ID that you obtained while completing the prerequisites.

      • CLIENT ID – Enter the value for the client ID that you obtained while completing the prerequisites.

      • CLIENT SECRET – Enter the value for the client secret that you obtained while completing the prerequisites.

      If you select OAuth 2.0 External (General App), enter the following information.

      • CLIENT ID – Enter the value for the client ID that you obtained while completing the prerequisites.

      • CLIENT SECRET – Enter the value for the client secret that you obtained while completing the prerequisites.

      • Click to authorize – Click to authorize the app.

    • DATA SOURCES – Select the data sources Operation Logs, or Sing In - Sign Out, or both, based on your requirement to fetch the data.

    • INGEST FROM – Select the time and date from which the collector must start ingesting events. If you leave this field blank and do not provide a threshold, all logs are ingested.

  7. (Optional) SITE – Select an existing site or to create a new site with a unique ID, click manage your sites. Adding a site name helps you to ensure efficient management of environments with overlapping IP addresses.

    By entering a site name, you associate the logs with a specific independent site. A sitename metadata field is automatically added to all the events that are going to be ingested via this collector. For more information about Site Management, see Define a Unique Site Name.

  8. (Optional) TIMEZONE – Select a time zone applicable to you for accurate detections and event monitoring.

    By entering a time zone, you override the default log time zone. A timezone metadata field is automatically added to all events ingested through this collector.

    Timezone_sitename_site_management_1.png
  9. Click Install.

    AWS_S3_2.png

    A confirmation message informs you that the new Cloud Collector is created.