Google Cloud Platform
Details
XDR consumes network traffic data, including Virtual Private Cloud (VPC) flow logs, from your GCP public cloud network.
Cisco XDR consumes network traffic data, including Virtual Private Cloud (VPC) flow logs, from your GCP public cloud network. It then performs dynamic entity modeling by running analytics on that data to detect threats and indicators of compromise. Cisco XDR consumes VPC flow logs directly from your GCP account using across-account IAM service account with the proper permissions.
For more information, go to Google Cloud Platform Integration Quick Start Guide
Capabilities
Health
Validates that the integration is healthy
Data Ingestion
Ingests and analyzes data from the integrated product to generate detections for incidents
Device Insights
Provides information about assets
Regions
North America
Europe
Asia-Pacific, Japan & China
Configuration details
Configuration guide
Configuration options