Views:

Connect the data sources required for various queries.

Note
Note
For more information on the log fields currently available for data sources, go to https://trendmicro.github.io/tm-v1-schema/pages/index.

Data sources / processors

Category
Data Source / Processor
Cloud
Email
  • Cloud Email Gateway Protection
  • Cloud Email and Collaboration Protection
  • InterScan Messaging Security Virtual Appliance
  • ScanMail for Microsoft Exchange
  • Cloud App Security
  • Trend Micro Deep Discovery Email Inspector
  • Trend Micro Email Security
Endpoint
  • Data Detection and Response
  • Endpoint Sensor
  • Server & Workload Protection
  • Standard Endpoint Protection
  • Trend Micro Apex Central On-Premises
  • Trend Micro Apex One as a Service
  • Deep Security
Identity
Network
Others
  • TXOne EdgeOne
  • TXOne StellarOne
  • Trend Cloud One - AWS CloudTrail Integration
  • Trend Vision One Mobile Security
Third-Party Logs
All logs sent to Trend Vision One from third-party products

General search and activity data sources

Method
Data Sources
Trend Micro products and compatible third-party products connected to Trend Vision One
Observed Attack Techniques
Trend Micro products and compatible third-party products connected to Trend Vision One
Note
Note
Use this method when automatically creating a query from configured filters in Observed Attack Techniques.
Trend Cloud One - Conformity
Tip
Tip
For more information on how to connect Trend Cloud One - Conformity, see:
Container Activity Data
Trend Micro products and compatible third-party products connected to Trend Vision One
Connected Trend Micro products
Trend Micro Web Security
Important
Important
You must use Product Instance to connect Trend Micro Web Security. For more information, see Connect existing products to Product Instance .