Hello everyone, we need to add the logs from a software that is still not supported in Chronicle, we will write our own parser.
How can we add a new log type? Do we have to contact google?
Yes, you will need to enter a ticket with support so they can create a new log type. You will need to provide a URL to the product page, the type of application (DB, IDS, IPS, WAF, FW, VPN etc), and a suggested data label.
Ok thank you. Will it be added for all Chronicle instances or only for us?
That will depend on the information you give them. If itโs for a custom app built in house, it will only be provided to the company requesting it. If itโs an app that anyone can purchase, it will be available to anyone.
Thank you very much for the precious information!