delimit_siem
Manage SIEM streaming: forward audit events to Splunk, Datadog, EventBridge, or webhooks. Configure, test, and check status.
Instructions
Manage SIEM streaming - forward audit events to Splunk, Datadog, EventBridge, or webhooks.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| action | No | status, configure, test, or forward | status |
| integration | No | splunk, datadog, eventbridge, or webhook (for configure) | |
| settings | No | JSON string of settings to update (for configure) | |
| enabled | No | "true" or "false" to enable/disable (for configure) | |
| event | No | JSON string of event to forward (for forward/test) |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||