Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

MS Sentinel Running List of Rules Requests #60

Open
skylar-1Password opened this issue Feb 27, 2024 · 1 comment
Open

MS Sentinel Running List of Rules Requests #60

skylar-1Password opened this issue Feb 27, 2024 · 1 comment
Assignees

Comments

@skylar-1Password
Copy link

Starting an issue to track requests for rules to be added to the 1Password x Sentinel integration.

  • Changes to SSO configurations for 1Password
  • Changes to firewall rules
  • Users were added to owner, security or admin groups
  • User's account MFA was changed n-times in [time].
  • Multiple MFA methods for a user's 1Password account were added in [time]
  • IP changed more than n-times while 1Password session is open.
  • Service account was added or given access to data
  • Changes to permissions on vaults (generally or specific)
  • Ability to define specific vaults that trigger alerts if user gives themselves access (e.g. AWS, Azure, root accounts)
  • Ability to define specific vaults that trigger alerts if user accesses item (e.g. AWS, Azure, root accounts)
@scottisloud scottisloud self-assigned this Feb 28, 2024
Copy link

github-actions bot commented Oct 2, 2024

This issue has been automatically marked as stale because it has not had recent activity. It will be closed in two weeks if no further activity occurs. 1Password employees have been nudged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants