Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Yes, you should be able to do this with Duo’s Admin API. You’ll need to log into your Duo cloud account and “create” by selecting Application > Protect an app and then set it up with the proper access and create the integration, secret and API hostn...
Little late but typically one would export the logs to an internal SIEM appliance and then you can set up your alerts from there. I dont’ know what you have internally available but
Here’s a reference to help:
Can logs be exported from Duo to a SIEM...