Views:

Connect the data sources required for various queries.

Note
Note
For more information on the log fields currently available for data sources, go to https://trendmicro.github.io/tm-v1-schema/pages/index.

Data sources / processors

Category
Data Source / Processor
Cloud
Email
  • Cloud Email Gateway Protection
  • Cloud Email and Collaboration Protection
  • InterScan Messaging Security Virtual Appliance
  • ScanMail for Microsoft Exchange
  • Cloud App Security
  • TrendAI™ Deep Discovery Email Inspector
  • Email Security
Endpoint
  • Data Detection and Response
  • Endpoint Sensor
  • Server & Workload Protection
  • Standard Endpoint Protection
  • Apex Central On-Premises
  • Apex One as a Service
  • Deep Security
Identity
Network
Others
  • TXOne EdgeOne
  • TXOne StellarOne
  • Trend Cloud One - AWS CloudTrail Integration
  • TrendAI Vision One™ Mobile Security
Third-Party Logs
All logs sent to TrendAI Vision One™ from third-party products

General search and activity data sources

Method
Data Sources
TrendAI™ products and compatible third-party products connected to TrendAI Vision One™
Observed Attack Techniques
TrendAI™ products and compatible third-party products connected to TrendAI Vision One™
Note
Note
Use this method when automatically creating a query from configured filters in Observed Attack Techniques.
Container Activity Data
TrendAI™ products and compatible third-party products connected to TrendAI Vision One™
Connected TrendAI™ products
TrendAI™ Web Security
Important
Important
You must use Product Instance to connect TrendAI™ Web Security. For more information, see Connect existing products to Product Instance .