Previously, we have made it possible for our customers to stream their configuration audit logs and network flow logs to security information and event management (SIEM) systems such as Splunk and ELK. We received a ton of customer requests to support Panther as a native streaming destination. Today we are excited to announce that we have partnered with Panther to make this possible.
Customers can now natively route their logs to Panther to monitor their tailnet, create custom detections, and set up fine-grain alerting rules. We will work closely with Panther Labs over the course of the coming months to add out-of-the-box detections for these logs as well.
This feature is currently in beta and can be enabled via the admin console.