Use the Akamai WAF SIEM integration to retrieve security events from Akamai Web Application Firewall (WAF) service.
Akamai WAF SIEM
- Details
- Content
- Dependencies
- Version History
Use the Akamai WAF SIEM integration to retrieve security events from Akamai Web Application Firewall (WAF) service.
Integrations
Name | Description |
---|---|
Akamai WAF SIEM |
Integrations
Name | Description |
---|---|
Akamai WAF SIEM | Use the Akamai WAF SIEM integration to retrieve security events from Akamai Web Application Firewall (WAF) service. |
Modeling Rules
Name | Description |
---|---|
Akamai WAF Modeling Rule |
Parsing Rules
Name | Description |
---|---|
Akamai_WAF Parsing Rule |
Required Content Packs (1)
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
Optional Content Packs (0)
Pack Name | Pack By |
---|
All level dependencies (1)
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
1.1.10 - 1820015 (December 16, 2024) Related pull requests:
- 37599
Download
Integrations
Akamai WAF SIEM
- Added support for 416 error - the integration will now reset itself in a case of such error. If the issue persists, please refer to the troubleshooting in the integration docs.
- Added support for send_events_to_xsiam with multithreading. Use this if you wish to improve the ingestion rate of the integration.
- Added the Skip events decoding parameter, Use this parameter to avoid decoding the http message and attack data fields and speed up the ingestion rate.
- 37599
Download
1.1.9 - 1727922 (December 1, 2024) Related pull requests:
- 37471
Download
Integrations
Akamai WAF SIEM
- Added limitations to Fetch limit and page size parameters due to Restrictions from the platform. The maximum allowed amount is 80k. Note that this change will not fail the execution, but if higher rates are configured, the fetch will use 80k. Note that in cases your the ingestion rate from the Akamai API is higher, the integration will detect it and immediately starts the next run.
- Fixed an issue where fetch-events failed with docker timeout error.
- 37471
Download
1.1.6 - 1609112 (November 7, 2024) Related pull requests:
- 37142
- 37146
- 37217
Download
Integrations
Akamai WAF SIEM
- Added the Page size integration parameter. Use this parameter to determine how many events to fetch on each request being made to Akamai.
- Fixed an issue where the integration sometimes returned duplicated events.
- Added the akamai-siem-reset-offset command which allows you to reset the integration context. Use this command when you want to remove offset history when fetching events.
- Updated the Docker image to: demisto/auth-utils:1.0.0.115527.
- 37142
- 37146
- 37217
Download
1.1.4 - 1126229 (June 26, 2024)
1.1.1 - 945534 (April 9, 2024) Related pull requests:
- 33727
- 33719
- 33696
- 33641
- 33516
- 33519
- 33515
- 33329
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33535
- 33534
- 33537
- 33552
- 33580
- 33553
- 33418
- 33583
- 33555
- 33556
- 33559
- 33560
- 33619
- 33591
- 33602
- 33600
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33558
- 33549
- 33527
- 33239
- 33450
- 33493
- 33542
- 33563
- 33582
- 33565
- 33578
- 33577
- 33368
- 33567
- 33564
- 33517
- 33594
- 33588
- 33417
- 33589
- 33599
- 33605
- 33593
- 33543
- 33574
- 33606
- 33590
- 33741
- 33675
- 33240
- 33634
- 33771
- 33609
- 33645
- 33779
- 33763
- 33369
- 33775
Download
Integrations
Akamai WAF SIEM
- Added the requestId field to the name of created incidents. This will prevent the creation of incidents with the same name.
- Updated the Docker image to: demisto/auth-utils:1.0.0.91447.
- 33727
- 33719
- 33696
- 33641
- 33516
- 33519
- 33515
- 33329
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33535
- 33534
- 33537
- 33552
- 33580
- 33553
- 33418
- 33583
- 33555
- 33556
- 33559
- 33560
- 33619
- 33591
- 33602
- 33600
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33558
- 33549
- 33527
- 33239
- 33450
- 33493
- 33542
- 33563
- 33582
- 33565
- 33578
- 33577
- 33368
- 33567
- 33564
- 33517
- 33594
- 33588
- 33417
- 33589
- 33599
- 33605
- 33593
- 33543
- 33574
- 33606
- 33590
- 33741
- 33675
- 33240
- 33634
- 33771
- 33609
- 33645
- 33779
- 33763
- 33369
- 33775
Download
1.2.0 - 2013343 (January 19, 2025) Related pull requests:
- 37761
- 38216
Download
Integrations
Akamai WAF SIEM
- Added the Long running instance integration parameter, use this param to fetch events from Akamai in a long running integration with higher performance. Use this beta parameter only if advised by CS.
- Added the Page Size - high performance mode integration parameter, use this param to determine the number of events to fetch per request to akamai along with Long running instance parameter.
- Added the Max allowed concurrent tasks integration parameter, The number of tasks that can run concurrently - the higher the number, the bigger the gap between the ingested events and the events pulled from akamai can be. Maximum is 10k. Use this only when using the Long running instance feature.
- Updated the Docker image to: demisto/auth-utils:1.0.0.1968974.
Parsing Rules
New: Akamai_WAF Parsing Rule
Added parsing rule for _time extraction.
- 37761
- 38216
Download
1.1.10 - 1820015 (December 16, 2024) Related pull requests:
- 37599
Download
Integrations
Akamai WAF SIEM
- Added support for 416 error - the integration will now reset itself in a case of such error. If the issue persists, please refer to the troubleshooting in the integration docs.
- Added support for send_events_to_xsiam with multithreading. Use this if you wish to improve the ingestion rate of the integration.
- Added the Skip events decoding parameter, Use this parameter to avoid decoding the http message and attack data fields and speed up the ingestion rate.
- 37599
Download
1.1.9 - 1727922 (December 1, 2024) Related pull requests:
- 37471
Download
Integrations
Akamai WAF SIEM
- Added limitations to Fetch limit and page size parameters due to Restrictions from the platform. The maximum allowed amount is 80k. Note that this change will not fail the execution, but if higher rates are configured, the fetch will use 80k. Note that in cases your the ingestion rate from the Akamai API is higher, the integration will detect it and immediately starts the next run.
- Fixed an issue where fetch-events failed with docker timeout error.
- 37471
Download
1.1.6 - 1609112 (November 7, 2024) Related pull requests:
- 37217
- 37142
- 37146
Download
Integrations
Akamai WAF SIEM
- Added the Page size integration parameter. Use this parameter to determine how many events to fetch on each request being made to Akamai.
- Fixed an issue where the integration sometimes returned duplicated events.
- Added the akamai-siem-reset-offset command which allows you to reset the integration context. Use this command when you want to remove offset history when fetching events.
- Updated the Docker image to: demisto/auth-utils:1.0.0.115527.
- 37217
- 37142
- 37146
Download
1.1.4 - 1126229 (June 26, 2024)
1.1.1 - 945534 (April 9, 2024) Related pull requests:
- 33727
- 33719
- 33696
- 33641
- 33516
- 33519
- 33515
- 33329
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33535
- 33534
- 33537
- 33552
- 33580
- 33553
- 33418
- 33583
- 33555
- 33556
- 33559
- 33560
- 33619
- 33591
- 33602
- 33600
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33558
- 33549
- 33527
- 33239
- 33450
- 33493
- 33542
- 33563
- 33582
- 33565
- 33578
- 33577
- 33368
- 33567
- 33564
- 33517
- 33594
- 33588
- 33417
- 33589
- 33599
- 33605
- 33593
- 33543
- 33574
- 33606
- 33590
- 33741
- 33675
- 33240
- 33634
- 33771
- 33609
- 33645
- 33779
- 33763
- 33369
- 33775
Download
Integrations
Akamai WAF SIEM
- Added the requestId field to the name of created incidents. This will prevent the creation of incidents with the same name.
- Updated the Docker image to: demisto/auth-utils:1.0.0.91447.
- 33727
- 33719
- 33696
- 33641
- 33516
- 33519
- 33515
- 33329
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33535
- 33534
- 33537
- 33552
- 33580
- 33553
- 33418
- 33583
- 33555
- 33556
- 33559
- 33560
- 33619
- 33591
- 33602
- 33600
- 33314
- 33318
- 33328
- 33357
- 33344
- 33359
- 33458
- 33558
- 33549
- 33527
- 33239
- 33450
- 33493
- 33542
- 33563
- 33582
- 33565
- 33578
- 33577
- 33368
- 33567
- 33564
- 33517
- 33594
- 33588
- 33417
- 33589
- 33599
- 33605
- 33593
- 33543
- 33574
- 33606
- 33590
- 33741
- 33675
- 33240
- 33634
- 33771
- 33609
- 33645
- 33779
- 33763
- 33369
- 33775
Download
1.1.0 - 933455 (April 3, 2024) Related pull requests:
- 33541
Download
Integrations
Akamai WAF SIEM
breaking Changes: Once updating to this version fetch alerts is no longer supported in XSIAM. To add events as alerts, make sure to add correlation rules.
- Added the fetch-events command.
Modeling Rules
New: Akamai WAF Modeling Rule
Added the Akamai_WAF event modeling rules (Available from Cortex XSIAM 1.3.0).
- 33541
Download
PUBLISHER
data:image/s3,"s3://crabby-images/cdaeb/cdaeb6108b9d10f4b2a563cfa6cce90a75e31b12" alt="Cortex"
PLATFORMS
Cortex XSOARCortex XSIAM
INFO
Certification | Certified | Read more |
Supported By | Cortex | |
Created | November 9, 2020 | |
Last Release | February 20, 2025 |
WORKS WITH THE FOLLOWING INTEGRATIONS:
data:image/s3,"s3://crabby-images/93f42/93f42224e56cabb6fc7919648208247e54003fdc" alt="Akamai WAF SIEM"