Audit Log Drains now support Datadog, Splunk, and Panther
Audit Log Drains now stream team audit events to Datadog, Splunk, and Panther in addition to custom HTTPS and Amazon S3 endpoints. This replaces the Custom SIEM Log Streaming feature and is available on Enterprise plans.
Audit Log Drains now stream your team's audit events into , , and , joining the existing custom HTTPS endpoint and Amazon S3 destinations. DatadogSplunkPanther
An forwards every event from your team's Activity Log, plus additional audit metadata, to the destination you choose. They're available on Enterprise plans. Audit Log Drain
To create one, go to in your team settings. Click Add Drain, choose Audit Log as the data type, and pick a destination. Drains
Audit Log Drains replace . If you already stream audit logs to a SIEM, follow the to move your integration over.Custom SIEM Log Streamingmigration guide
Learn more about in the documentation.Drains
Source: original entry ↗