- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-27-2020 09:15 PM - edited 04-27-2020 09:45 PM
Hi PAN Community,
How's everything going? I hope everyone is well and safe.
I know there are plenty of MineMeld fans out there but just in case MineMeld deployment is an overkill for your organization and Office 365 security is a burning item in your task list, I thought I'd share a simple and elegant solution that has been running in my setup for over a year now.
o365-json-to-flatfile-converter is a Python-based script that feeds my PAN FWs' External Dynamic Lists and a Splunk instance. The generated flatfiles are in a universal format, so they can be used with other security solutions and appliances like Cisco, Forcepoint, RSA, etc. For more details please see README.
URL: https://github.com/ivang-coder/o365-json-to-flatfile-converter.git
Dear moderators, in case this post is in the wrong location, please move it to the right one or advise the right way of posting.
Cheers,
IvanG