Cloud Collector Application
Purpose
Collectors are programs which request information from a data source and forward it to Devo’s load balancer. The Cloud Collector Application is used to authorize a collector to access a data source. Common uses are:
Use an SQS to get data from AWS and make it searchable in Devo.
Use an API key to request:
authentication logs from a web application so that the actions of compromised user accounts can be detected.
threat logs from an endpoint threat detection application so that the threats can be isolated.
firewall logs from a cloud firewall so that malicious traffic can be blocked.
Permissions
If enabled, the Cloud Collector App is available to the Admin role by default. The application should only be added to privileged roles.
Contents
, multiple selections available,