https://techcommunity.microsoft.com/discussions/microsoftsentinel/ingest-cef-logs-in-commonsecuritylog-with-logstasth/3984121
Ingest CEF logs in CommonSecurityLog with Logstasth | Microsoft Community Hub
HelloWe are migrating to Sentinel from Splunk. For the log ingestion we are using Native Data Connectors where we can and Logstash with the...
microsoft communityingestceflogshub