Skip to content
Closed
Show file tree
Hide file tree
Changes from 3 commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
6 changes: 3 additions & 3 deletions config/_default/menus/main.en.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -5523,10 +5523,10 @@ menu:
parent: observability_pipelines_destinations
identifier: observability_pipelines_elasticsearch
weight: 906
- name: Google Chronicle
url: observability_pipelines/destinations/google_chronicle
- name: Google SecOps
url: observability_pipelines/destinations/google_secops/
parent: observability_pipelines_destinations
identifier: observability_pipelines_google_chronicle
identifier: observability_pipelines_google_secops
weight: 907
- name: Google Cloud Storage
identifier: observability_pipelines_google_cloud_storage
Expand Down
4 changes: 2 additions & 2 deletions content/en/observability_pipelines/destinations/_index.md
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ Select and set up your destinations when you [set up a pipeline][1]. This is ste
{{< nextlink href="observability_pipelines/destinations/crowdstrike_ng_siem" >}}CrowdStrike Next-Gen SIEM{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/datadog_logs" >}}Datadog Logs{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/elasticsearch" >}}Elasticsearch{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/google_chronicle" >}}Google Chronicle{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/google_secops" >}}Google SecOps{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/google_cloud_storage" >}}Google Cloud Storage{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/new_relic" >}}New Relic{{< /nextlink >}}
{{< nextlink href="observability_pipelines/destinations/microsoft_sentinel" >}}Microsoft Sentinel{{< /nextlink >}}
Expand All @@ -53,7 +53,7 @@ The following table lists the destinations and fields that support template synt
| Amazon S3 | Prefix | The Worker creates a folder named `OP_UNRESOLVED_TEMPLATE_LOGS/` and writes the logs there. |
| Azure Blob | Prefix | The Worker creates a folder named `OP_UNRESOLVED_TEMPLATE_LOGS/` and writes the logs there. |
| Elasticsearch | Source type | The Worker writes logs to the `datadog-op` index. |
| Google Chronicle | Log type | Defaults to `DATADOG` log type. |
| Google SecOps | Log type | Defaults to `DATADOG` log type. |
| Google Cloud | Prefix | The Worker creates a folder named `OP_UNRESOLVED_TEMPLATE_LOGS/` and writes the logs there. |
| Opensearch | Index | The Worker writes logs to the `datadog-op` index. |
| Splunk HEC | Index<br>Source type | The Worker sends the logs to the default index configured in Splunk.<br>The Worker defaults to the `httpevent` sourcetype. |
Expand Down
Original file line number Diff line number Diff line change
@@ -1,20 +1,20 @@
---
title: Google Chronicle Destination
title: Google SecOps Destination
disable_toc: false
---
Use Observability Pipelines' Google Chronicle destination to send logs to Google Chronicle.
Use Observability Pipelines' Google SecOps destination to send logs to Google SecOps.

## Setup

Set up the Google Chronicle destination and its environment variables when you [set up a pipeline][1]. The information below is configured in the pipelines UI.
Set up the Google SecOps destination and its environment variables when you [set up a pipeline][1]. The information below is configured in the pipelines UI.

### Set up the destination

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

### Set the environment variables

{{% observability_pipelines/configure_existing_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/configure_existing_pipelines/destination_env_vars/google_secops %}}

### How the destination works

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -99,9 +99,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -304,9 +304,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -98,9 +98,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -303,9 +303,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -102,9 +102,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -306,9 +306,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -103,9 +103,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -309,9 +309,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -100,9 +100,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -304,9 +304,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -101,9 +101,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -307,9 +307,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -98,9 +98,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -303,9 +303,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -99,9 +99,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -307,9 +307,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -99,9 +99,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -304,9 +304,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -101,9 +101,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -306,9 +306,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -101,9 +101,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -306,9 +306,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -101,9 +101,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -306,9 +306,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -102,9 +102,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -308,9 +308,9 @@ Follow the instructions for the cloud provider you are using to archive your log
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -50,9 +50,9 @@ Enter the following information based on your selected logs destinations.
{{% observability_pipelines/destination_settings/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_settings/chronicle %}}
{{% observability_pipelines/destination_settings/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down Expand Up @@ -257,9 +257,9 @@ To set up the destination, follow the instructions for the cloud provider you ar
{{% observability_pipelines/destination_env_vars/amazon_security_lake %}}

{{% /tab %}} -->
{{% tab "Chronicle" %}}
{{% tab "Google SecOps" %}}

{{% observability_pipelines/destination_env_vars/chronicle %}}
{{% observability_pipelines/destination_env_vars/google_secops %}}

{{% /tab %}}
{{% tab "CrowdStrike NG-SIEM" %}}
Expand Down
Loading
Loading