Sink Connector: Accessed Provider APIs

The following APIs are accessed by the Sink connector.

AWS Security Lake

Synqly APIProvider API
POST /v1/sink/eventsPUT /{item}/{item}/{item}/{item}/ext/{item}/{item}/{item}/APIActivity/{item}
PUT /{item}/{item}/{item}/{item}/ext/{item}/{item}/{item}/DetectionFinding/{item}

Splunk

Synqly APIProvider API
POST /v1/sink/eventsPOST/
POST /services/collector/event

Crowdstrike HEC

Synqly APIProvider API
POST /v1/sink/eventsPOST/
POST /services/collector

AWS SQS

Synqly APIProvider API
POST /v1/sink/eventsPOST /queue/{item}/{item}/{item}

Elasticsearch

Synqly APIProvider API
POST /v1/sink/eventsPOST /{item}/_bulk

Google Security Operations

Synqly APIProvider API
POST /v1/sink/eventsPOST /v2/udmevents:batchCreate
POST /v1alpha/projects/synqly/locations/us/instances/{item}/events:import

Azure Monitor Logs

Synqly APIProvider API
POST /v1/sink/eventsPOST /dataCollectionRules/{item}/streams/Custom-ASimEvent