<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure XSIAM in Cortex XSIAM Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255337#M416</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/710084109"&gt;@bridgetlitt&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Greetings for the day.&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;1. Key Differences Between Integration Methods&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;H4&gt;&lt;SPAN&gt;(Setup Method)&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Microsoft Azure Integration (CSP Onboarding):&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;This method uses an automated onboarding wizard to streamline Azure environment setup within Cortex XSIAM. It typically involves running an ARM template or script (for example, &lt;/SPAN&gt;&lt;CODE dir="ltr"&gt;&lt;SPAN&gt;onboard.sh&lt;/SPAN&gt;&lt;/CODE&gt;&lt;SPAN&gt;) that automatically creates the required Azure resources, including Diagnostic Settings, Event Hubs, and permissions across subscriptions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure Event Hub Integration:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;This is a manual “pull” collector approach. You must first configure the Event Hub and Diagnostic Settings within the Azure Portal, then provide Cortex XSIAM with the required credentials, including:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;SPAN&gt;Event Hub Connection String&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Storage Account Connection String (used for checkpointing and partition management)&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Consumer Group&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;&lt;SPAN&gt;Scope and Management&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;-The &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Microsoft Azure (CSP) integration&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; is designed for large-scale log collection across entire tenants or multiple subscriptions. If audit logs are enabled during onboarding, the integration manages the underlying Event Hub resources automatically, often eliminating the need for a separate manual Event Hub connector.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;-The &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure Event Hub integration&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; is typically used for targeted, high-volume log sources (such as Entra ID Sign-in logs) or logs from specific services (for example, AKS or Intune) where organizations prefer direct ingestion into XSIAM without onboarding the entire Azure environment.&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;HR /&gt;&lt;/DIV&gt;
&lt;H4&gt;&lt;SPAN&gt;2. Automation Features of the Microsoft Azure Integration&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;The Microsoft Azure (CSP) integration provides several automation-focused capabilities:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Automated Log Routing:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Automatically configures Azure Diagnostic Settings to stream logs (Activity Logs, Audit Logs, etc.) to the Event Hubs used by XSIAM.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Asset Discovery:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Automatically scans monitored Azure accounts and populates the Asset Inventory, providing centralized visibility into cloud resources.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Continuous Monitoring:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Once onboarding is completed, XSIAM continuously monitors onboarded Azure accounts for data and configuration changes.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Playbook Orchestration:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; XSIAM leverages built-in content packs and playbooks to automatically triage, investigate, and respond to threats identified from Azure telemetry.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;DIV&gt;&lt;HR /&gt;&lt;/DIV&gt;
&lt;H4&gt;&lt;SPAN&gt;3. Does It Replace the Need to Deploy Agents?&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;No.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; The Microsoft Azure integration does not replace the need to deploy Cortex XDR agents.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;Cortex XSIAM uses a layered architecture in which the &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR agent&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; functions as the primary endpoint sensor for deep visibility and prevention.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;The roles are complementary:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cloud Log Integrations:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Provide management-plane and data-plane telemetry, such as user sign-ins, resource changes, and cloud activity logs.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR Agents:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Provide host-level telemetry, including process execution, file activity, registry changes, and network connections within the operating system.&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;&lt;SPAN&gt;Co-existence Model:&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;For a complete security posture:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;SPAN&gt;Deploy &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR agents&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; on Azure virtual machines (IaaS workloads) to enable Endpoint Detection and Response (EDR) capabilities.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Use &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure integrations&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; to ingest cloud-native telemetry and management logs.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;Together, these components provide a more complete security narrative across cloud infrastructure and endpoint activity.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you feel this has answered your query, please let us know by clicking&amp;nbsp;&lt;STRONG&gt;like&amp;nbsp;&lt;/STRONG&gt;and on&amp;nbsp;&lt;STRONG&gt;"mark this as a Solution"&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks &amp;amp; Regards,&lt;BR /&gt;S. Subashkar Sekar&lt;/P&gt;</description>
    <pubDate>Wed, 03 Jun 2026 19:52:38 GMT</pubDate>
    <dc:creator>susekar</dc:creator>
    <dc:date>2026-06-03T19:52:38Z</dc:date>
    <item>
      <title>Azure XSIAM</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255313#M415</link>
      <description>&lt;P&gt;How is on-boarding logs using Microsoft Azure integration different from using the Azure Event hub integration?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-3.x-Documentation/Onboard-Microsoft-Azure" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-3.x-Documentation/Onboard-Microsoft-Azure&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-Documentation/Ingest-Logs-from-Microsoft-Azure-Event-Hub" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-Documentation/Ingest-Logs-from-Microsoft-Azure-Event-Hub&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also any details on what specifically is the automation features that the Microsoft Azure integration provides would be helpful? Does this replace the need to deploy agents?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;LI-PRODUCT title="Cortex XSIAM" id="Cortex_XSIAM"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;LI-PRODUCT title="Azure" id="Azure"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jun 2026 10:57:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255313#M415</guid>
      <dc:creator>bridgetlitt</dc:creator>
      <dc:date>2026-06-03T10:57:45Z</dc:date>
    </item>
    <item>
      <title>Re: Azure XSIAM</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255337#M416</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/710084109"&gt;@bridgetlitt&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Greetings for the day.&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;1. Key Differences Between Integration Methods&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;H4&gt;&lt;SPAN&gt;(Setup Method)&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Microsoft Azure Integration (CSP Onboarding):&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;This method uses an automated onboarding wizard to streamline Azure environment setup within Cortex XSIAM. It typically involves running an ARM template or script (for example, &lt;/SPAN&gt;&lt;CODE dir="ltr"&gt;&lt;SPAN&gt;onboard.sh&lt;/SPAN&gt;&lt;/CODE&gt;&lt;SPAN&gt;) that automatically creates the required Azure resources, including Diagnostic Settings, Event Hubs, and permissions across subscriptions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure Event Hub Integration:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;This is a manual “pull” collector approach. You must first configure the Event Hub and Diagnostic Settings within the Azure Portal, then provide Cortex XSIAM with the required credentials, including:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;SPAN&gt;Event Hub Connection String&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Storage Account Connection String (used for checkpointing and partition management)&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Consumer Group&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;&lt;SPAN&gt;Scope and Management&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;-The &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Microsoft Azure (CSP) integration&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; is designed for large-scale log collection across entire tenants or multiple subscriptions. If audit logs are enabled during onboarding, the integration manages the underlying Event Hub resources automatically, often eliminating the need for a separate manual Event Hub connector.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;-The &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure Event Hub integration&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; is typically used for targeted, high-volume log sources (such as Entra ID Sign-in logs) or logs from specific services (for example, AKS or Intune) where organizations prefer direct ingestion into XSIAM without onboarding the entire Azure environment.&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;HR /&gt;&lt;/DIV&gt;
&lt;H4&gt;&lt;SPAN&gt;2. Automation Features of the Microsoft Azure Integration&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;The Microsoft Azure (CSP) integration provides several automation-focused capabilities:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Automated Log Routing:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Automatically configures Azure Diagnostic Settings to stream logs (Activity Logs, Audit Logs, etc.) to the Event Hubs used by XSIAM.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Asset Discovery:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Automatically scans monitored Azure accounts and populates the Asset Inventory, providing centralized visibility into cloud resources.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Continuous Monitoring:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Once onboarding is completed, XSIAM continuously monitors onboarded Azure accounts for data and configuration changes.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Playbook Orchestration:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; XSIAM leverages built-in content packs and playbooks to automatically triage, investigate, and respond to threats identified from Azure telemetry.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;DIV&gt;&lt;HR /&gt;&lt;/DIV&gt;
&lt;H4&gt;&lt;SPAN&gt;3. Does It Replace the Need to Deploy Agents?&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;STRONG&gt;&lt;SPAN&gt;No.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; The Microsoft Azure integration does not replace the need to deploy Cortex XDR agents.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;Cortex XSIAM uses a layered architecture in which the &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR agent&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; functions as the primary endpoint sensor for deep visibility and prevention.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;The roles are complementary:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cloud Log Integrations:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Provide management-plane and data-plane telemetry, such as user sign-ins, resource changes, and cloud activity logs.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR Agents:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; Provide host-level telemetry, including process execution, file activity, registry changes, and network connections within the operating system.&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;&lt;SPAN&gt;Co-existence Model:&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P class="isSelectedEnd"&gt;&lt;SPAN&gt;For a complete security posture:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;&lt;SPAN&gt;Deploy &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Cortex XDR agents&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; on Azure virtual machines (IaaS workloads) to enable Endpoint Detection and Response (EDR) capabilities.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Use &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;Azure integrations&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt; to ingest cloud-native telemetry and management logs.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;Together, these components provide a more complete security narrative across cloud infrastructure and endpoint activity.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you feel this has answered your query, please let us know by clicking&amp;nbsp;&lt;STRONG&gt;like&amp;nbsp;&lt;/STRONG&gt;and on&amp;nbsp;&lt;STRONG&gt;"mark this as a Solution"&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks &amp;amp; Regards,&lt;BR /&gt;S. Subashkar Sekar&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jun 2026 19:52:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255337#M416</guid>
      <dc:creator>susekar</dc:creator>
      <dc:date>2026-06-03T19:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: Azure XSIAM</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255397#M417</link>
      <description>&lt;P&gt;Thanks for the response. This is very helpful. So the log ingestion part is same as that with Azure event hub integration except that the azure integration provides you an automated way to create that event hub.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For automation I was looking for what was actually meant by this in the documentation "&lt;SPAN class="bold"&gt;&lt;STRONG&gt;Automation:&lt;/STRONG&gt;&lt;/SPAN&gt; Use automation to pre-configure a list of integrations and associated commands to automate security issue responses. Commands can be utilized individually or as part of custom playbooks for issue remediation."&amp;nbsp; What are the commands and what is meant by&amp;nbsp;to pre-configure a list of integrations?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, i suppose some of the capabilities you mentioned are not there for foundational configuration. Do you have an exact list of features that is available for foundational configuration?&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jun 2026 08:30:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsiam-discussions/azure-xsiam/m-p/1255397#M417</guid>
      <dc:creator>bridgetlitt</dc:creator>
      <dc:date>2026-06-04T08:30:53Z</dc:date>
    </item>
  </channel>
</rss>

