Aviatrix
Important
Some information in this article relates to a prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
Aviatrix and Microsoft Security Copilot have partnered to bring together an AI enabled plugin to allow customers to leverage Microsoft Defender Threat Intelligence with Aviatrix to gain insight into new threats and mitigate them through firewall policy enforcement. Integration with Aviatrix across Microsoft Security Copilot, Microsoft Defender Threat Intelligence, and Microsoft Sentinel are outlined and enabled through Microsoft LogicApps in this document.
Note
This article contains information about third-party plugins. This is provided to help complete integration scenarios. However, Microsoft does not provide troubleshooting support for third-party plugins. Contact the third-party vendor for support.
Know before you begin
Integration with Security Copilot works with an API key. You need to take the following steps before using the plugin.
Sign in to Microsoft Security Copilot.
Access Manage Plugins by selecting the Plugin button from the prompt bar.
Next to Aviatrix, select Set up.
Enter your Aviatrix controller username and password.
Save your changes.
Sample Aviatrix prompts
After the Aviatrix plugin is configured, you can type "Aviatrix" in your Security Copilot prompt bar, followed by an action. The following list provides example prompts to try:
Aviatrix show me my firewall policies.
Aviatrix show me log data for x.x.x.x.
Aviatrix show me all blocked ports.
Aviatrix show me all allowed rules.
Aviatrix allows you to gain insight by allowing users to easily query our detailed resource, firewall, and log data. Be creative with your prompts using natural language.
Troubleshoot the Aviatrix plugin
Errors occur
If you encounter errors, such as Couldn't complete your request, or An unknown error occurred. Make sure the plugin is turned on. This error may occur if the lookback period is too long, causing the query to attempt to retrieve an excessive amount of data. If the issue persists, sign out of Security Copilot, and then sign back in.
Prompts aren't invoking the correct capabilities
If prompts aren't invoking the correct capabilities, or prompts are invoking some other capability set, you might have custom plugins or other plugins that have similar functionality as the capability set you want to use.
Provide feedback
To provide feedback, contact Aviatrix.