HTTP Receiver log source parameters for Red Hat Advanced Cluster Security for Kubernetes

If QRadar® does not automatically detect the log source, add a Red Hat® Advanced Cluster Security for Kubernetes log source on the QRadar Console by using the HTTP Receiver.

When using the HTTP Receiver protocol, there are specific parameters that you must use.

The following table describes the parameters that require specific values to collect HTTP Receiver events from Red Hat Advanced Cluster Security for Kubernetes:
Table 1. HTTP Receiver log source parameters for the Red Hat Advanced Cluster Security for Kubernetes DSM
Parameter Value
Log Source type Red Hat Advanced Cluster Security for Kubernetes
Protocol Configuration HTTP Receiver
Log Source Identifier The IP address, hostname, or any name to identify the source of the payloads.

Must be unique for the log source type.

Communication Type HTTP or HTTPs - The value is determined by the open port and the StackRox Generic Webhook integration that you completed.
Listen Port The port that you specified when you completed the StackRox Generic Webhook integration.

For a complete list of HTTP Receiver protocol parameters and their values, see HTTP Receiver protocol configuration options.