Configure Cisco Umbrella for Arctic Wolf monitoring
You can configure Cisco Umbrella® to send the necessary logs to Arctic Wolf® for security monitoring.
Note:
If you use the legacy Cisco Umbrella monitoring setup, which forwards Cisco Umbrella logs to Arctic Wolf from an Amazon Web Services (AWS) Simple Storage Service (S3) bucket:
- Arctic Wolf recommends completing these configuration steps to initiate your migration to an API-based Cisco Umbrella cloud sensor.
- Generate new Umbrella Reporting API credentials, after which Arctic Wolf receives no Cisco Umbrella logs from your S3 bucket until you provision these credentials to Arctic Wolf and the status of your new Cisco Umbrella account in the MDR Dashboard changes to Healthy.
- If you have a legacy Cisco Umbrella monitoring setup based on S3 log forwarding, complete Remove Cisco Umbrella from your AWS environment.