Currently InsightIDR does not have a native way to ingest AWS Managed Microsoft Active Directory security logs which has left us with a bit of a gap in our data collection. We worked with Rapid7 on this and confirmed there was currently not support for it. We also attempted a few work-arounds at no avail.
I was curious if anybody else out there has this same issue and if they have come up with any good work-arounds to get this data into IDR?