Amazon CloudFront

The QRadar® product data source type for Amazon CloudFront collects events from Amazon S3 Buckets and Amazon Kinesis Data Streams.

The following table lists the specifications for the Amazon CloudFront data source type:
Table 1. Amazon CloudFront data source type specifications
Specification Value
Manufacturer Amazon
Data source type Amazon CloudFront
Connector type Amazon Web Services
Event format Tab Separated Value (TSV)
Recorded event types RealTime Log - TSV
Automatically discovered? No
Includes identity? No
Includes custom properties? No
More information Amazon CloudFront documentation (https://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/real-time-logs.html)

For information about adding a data source in the QRadar product, see Adding ingestion data sources.

If you are an IBM® QRadar user, see Terminology changes for QRadar customers.