Views:

Learn how to forward log data from your Amazon S3 to TrendAI Vision One™ for analysis, correlation, or compliance purposes.

Important
Important
This feature is not yet available in all regions.

Procedure

  1. Go to Cloud SecurityCloud Accounts.
  2. Click Add Account.
  3. On the Add AWS Account screen, select Cloud Formation for the deployment method and Single AWS Account for the account to onboard.
  4. Click Next.
  5. Specify the account name, description and region to deploy the Cloud Formation template and click Next.
  6. Enable Log Collection via Amazon S3, select the region for the deployment from the drop-down list, and click Next.
  7. Open a new browser window and sign in to your AWS account.
  8. In the TrendAI Vision One™ browser window, click Launch Stack.
  9. Click Done.
  10. Go to Agentic SIEM & XDRData Source and Log ManagementThird-party log repositories.
  11. Create a new log repository or select an existing log repository.
  12. On the Log repository panel, go to the Collectors tab and click Add collector.
    The Add collector screen appears.
  13. Select the vendor, product, log format, and log timezone of the log source.
  14. Specify the collector name and description.
  15. Select Amazon S3 as the log ingestion method.
  16. Select your AWS account from the drop-down list.
  17. Specify the S3 URI, filename pattern, and folders to exclude.
  18. Click Test connection.
  19. Click Add.
  20. On the Log repository drawer on the Collectors tab, verify the information under the collector you created.
    Your Amazon S3 now starts to send log data to TrendAI Vision One™.