Cloud Collector Application

Cloud Collector Application

Purpose

Collectors are programs which request information from a data source and forward it to Devo’s load balancer. The Cloud Collector Application is used to authorize a collector to access a data source. Common uses are:

  • Use an SQS to get data from AWS and make it searchable in Devo.

  • Use an API key to request:

    • authentication logs from a web application so that the actions of compromised user accounts can be detected.

    • threat logs from an endpoint threat detection application so that the threats can be isolated.

    • firewall logs from a cloud firewall so that malicious traffic can be blocked.

10_Cloud collector application.png

Permissions

If enabled, the Cloud Collector App is available to the Admin role by default. The application should only be added to privileged roles.

image-20250411-160911.png

 

 

Contents