Integration Name
Microsoft Defender XDR [m365_defender]
Dataset Name
Integration Version
5.1.1
Agent Version
9.2.1
OS Version and Architecture
Debian
User Goal
Configure the integration to work with Microsoft's Partner Center and its granular delegated admin privileges (GDAP) constructs to authorize and collect tenant information.
Existing Features
Similar to work we previously did for both Microsoft Office 365 (#14924) and Microsoft Defender Endpoint (#15605), we need to expose the "OAuth2 Endpoint Params" via the integration to allow users to modify the grant_type and the refresh_token value.
What did you see?
This integrations options: https://www.elastic.co/docs/reference/integrations/m365_defender
The other integration options:
Anything else?
Similar to #15605 and #14924.
Depends on #16408, elastic/beats#47256, and #16586.
Depends on elastic/beats#48479.
Integration Name
Microsoft Defender XDR [m365_defender]
Dataset Name
Integration Version
5.1.1
Agent Version
9.2.1
OS Version and Architecture
Debian
User Goal
Configure the integration to work with Microsoft's Partner Center and its granular delegated admin privileges (GDAP) constructs to authorize and collect tenant information.
Existing Features
Similar to work we previously did for both Microsoft Office 365 (#14924) and Microsoft Defender Endpoint (#15605), we need to expose the "OAuth2 Endpoint Params" via the integration to allow users to modify the
grant_typeand therefresh_tokenvalue.What did you see?
This integrations options: https://www.elastic.co/docs/reference/integrations/m365_defender
The other integration options:
Anything else?
Similar to #15605 and #14924.
Depends on #16408, elastic/beats#47256, and #16586.
Depends on elastic/beats#48479.