Skip to main content

Security ContentThreat Detection, Investigation, and Response for Public Cloud Guide

Supported Cloud Environments and Log Sources

TDIR for Public Cloud supports threat detection for the following cloud environments and corresponding log sources:

  • Google Cloud Platform (GCP) – CloudAudit

  • Amazon Web Services (AWS) – CloudTrail

  • Microsoft Azure – Azure Activity Logs

The following table shows which cloud platform is supported for specific versions of Advanced Analytics.

TDIR-cloud-platforms.png

* Only a subset of AWS rules are supported in version i62.4. For more information, see Amazon Web Services – Rules by Use Case.