Add collectors to your log repository to ingest log data from your third-party data sources.
Procedure
- Go to .
- Create a new log repository or select an existing log repository.
- On the Log repository panel, go to the Collectors tab and click Add collector.The Add collector screen appears.
- Select the vendor, product, log format, and log timezone of the log source.

Important
-
Ingestion of log data from Third-Party Integrations may require additional configuration steps.
-
Ingestion of log data from Microsoft Defender for Endpoint requires you to Enable Microsoft Defender for Endpoint Log Collection in the Features and Permissions for your Azure subscriptions in Cloud Accounts. After deploying the terraform script to your Azure subscription, the collector is automatically created.
-
- Specify the collector name and description.
- Select and configure API ingestion or Service Gateway ingestion as the log ingestion method.
- Click Add.The collector is added to the log repository.
- If desired, click Manage log filters in the collector details and configure log filters to enhance performance and data quality by preventing logs containing specified keywords from being collected.
