Skip to main content
Question

Action One log source Integration in google chronicle

  • February 12, 2026
  • 2 replies
  • 35 views

muniraja
Forum|alt.badge.img+1

Hi Team,

 

We are currently looking for the integration documentation for the Action1 Patch Management tool with Google Chronicle.

Could you please share any available documentation or reference guides for both integration methods (such as Syslog forwarding and API-based integration)?

This will help us review the configuration steps and proceed with the implementation accordingly.

Please let us know if any prerequisites or additional details are required from our end.
 

Regards,

Muniraja

2 replies

vaskenh
Staff
Forum|alt.badge.img+13
  • Staff
  • February 13, 2026

Hi ​@muniraja.  In this scenario are you looking for guidance on the ingestion of events related to Action1, or for guidance on the creation of a custom integration for it?  If it’s the latter I link some relevant guidance below.  I’ve also linked a separate page related to the general ingestion of events into SecOps.

 

https://docs.cloud.google.com/chronicle/docs/soar/respond/ide/building-a-custom-integration

 

https://docs.cloud.google.com/chronicle/docs/secops/secops-ingestion


muniraja
Forum|alt.badge.img+1
  • Author
  • New Member
  • February 16, 2026

Hi ,

The client is only using the SIEM console (for example, Google Chronicle SIEM) and not using the SOAR console, device integration is still absolutely possible?.