S3 Data Export
HYAS Protect offers robust functionality for exporting DNS logs to an S3 bucket, which can then be easily integrated with SIEM and SOAR platforms. This integration allows security teams to enrich their existing security data with HYAS Protect's advanced DNS intelligence, providing deeper insights into potential threats. By exporting DNS logs, organizations can enhance their threat analysis and incident response capabilities, enabling more proactive and informed decision-making. The process is straightforward, ensuring that valuable DNS data is readily available for comprehensive security monitoring and automated response actions within their SIEM and SOAR systems.
Requirements
HYAS Protect
Amazon S3 Bucket
Configuring S3 Data Export
Begin by logging into HYAS Protect and navigating to the Settings Menu.
From there, select “S3 Data Export”
Toggle the data export to “Enabled”
For your Amazon S3 Bucket, enter the following details:
Region
Bucket Name
Access Key ID
Secret Access Key
Path Prefix (if applicable)
Next, click on “Verify S3 Access”
If the setup works properly, you’ll receive a green “S3 Details Were Verified” notification at the top of the screen.
If connection with the S3 Bucket was unsuccessful, you’ll receive a red error at the top of the page noting the likely issue.
Once you’ve configured your setup properly, select “Save” and your all set!
Data is exported approximately every 10 minutes.