Azure / Azure/Azure-Sentinel

GitHub Enterprise Audit Log (via Codeless Connector Framework) Fails to Connect

Open
#14,695 4 comments 0 reactions 3 assignees Claimed by @hassanchawiche View on GitHub
Codeless Connector Framework (CCF) Connector Connector
Dominant language
Python
Stars
6.1k
Forks
3.8k
Avg merge
4d 7h
Merged PRs (30d)
125

Description

**Describe the bug**
In November 2025, we configured the GitHub Enterprise Audit Log (via Codeless Connector Framework) data connector in Microsoft Sentinel. It was ingesting GitHub enterprise audit logs successfully from that time until 6/23/2026 when all the logs stopped ingesting. We then deleted the existing connection and attempted to recreate the connection but are now getting a Missing Dependencies error when trying to create the connection. We are on the current version of the content pack 3.3.1. We have ensured all access is correct as indicated by the documentation.

**To Reproduce**
Steps to reproduce the behavior:
1. In Microsoft Sentinel – Data Connectors, we browse to the GitHub Enterprise Audit Log (via Codeless Connector Framework). There are currently no connections. We click Add Enterprise.

Image

2. We enter in the API as shown and validated this is the correct API Url. We enter the API key for a PAT token (classic) we have validated has the correct scopes (read:audit_log). We click Connect.

Image

3. The deployment starts but then fails with the message “Deployment failed – Cannot connect the connector. Missing dependencies.

Image

Image

**Expected behavior**
The connection should create and logs should ingest.

**Screenshots**
See above in repro steps

**Desktop (please complete the following information):**
- OS: Windows 11
- Browser Edge
- Version Latest

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.