For the complete documentation index, see llms.txt. This page is also available as Markdown.
Cortex Cloud Runtime

Dropbox

Configure the Dropbox data source for Cortex Cloud.

You can configure collecting Dropbox logs and data using a standard data source or content pack integration (onboarded prior to July 26, 2026):

Dropbox vendor
Description

Standard data source overview

Forward different types of data from Dropbox Business accounts to Cortex Cloud using the Dropbox data source.

Link to standard data source instructions

The following types of data can be ingested from Dropbox:

  • Log collection

    • Events

  • Directory and metadata

    • Member Devices

    • Users

    • Groups

For more information, see Ingest logs and data from Dropbox.

Links to content pack/ integration details (onboarded prior to July 26, 2026)

The Dropbox content pack fetches and collects security events from Dropbox logs. It includes Correlation Rules, Modeling Rules, Parsing Rules, a Playbook, and a Cortex XSIAM Dashboard. It also includes the following integration:

  • Dropbox Event Collector: Use this integration to collect events from Dropbox logs. It contains commands such as dropbox-auth-start to initiate the authorization process, dropbox-auth-complete to finish authorization, dropbox-auth-test to check connectivity, dropbox-auth-reset to reset authentication, and dropbox-get-events to retrieve events.

Last updated

Was this helpful?