<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"><url><loc>https://docs.utmstack.com/</loc></url><url><loc>https://docs.utmstack.com/siem/getting-started/introduction</loc><lastmod>2026-04-22T14:32:53.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/getting-started/community-resources</loc><lastmod>2026-05-28T15:15:00.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/architecture</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/system-requirements</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/installation</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/installation-from-iso</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/firewall-rules</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/ssl-certificate</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/installation/installer-update-guide</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/getting-started-rules-and-filters/architecture-overview</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/getting-started-rules-and-filters/components</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/getting-started-rules-and-filters/standard-event-schema</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/getting-started-rules-and-filters/development-workflow</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/settings</loc><lastmod>2026-05-28T15:27:57.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/implementing-rules</loc><lastmod>2026-05-28T15:27:56.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/implementing-filters</loc><lastmod>2026-05-28T15:27:56.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/best-practices</loc><lastmod>2026-05-28T15:28:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/filter-steps-reference</loc><lastmod>2026-05-28T15:28:05.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/cel-overloads</loc><lastmod>2026-05-28T15:28:05.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/advanced-features</loc><lastmod>2026-05-28T15:28:05.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/real-world-examples</loc><lastmod>2026-05-28T15:28:05.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/threat-intelligence</loc><lastmod>2026-05-28T15:28:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/trubleshooting</loc><lastmod>2026-05-28T15:28:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/configuration-implementation/data-retention</loc><lastmod>2026-05-28T15:29:16.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/developer-resources/playground</loc><lastmod>2026-05-28T15:13:18.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/developer-resources/tools</loc><lastmod>2026-05-28T15:13:44.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/developer-resources/custom-plugins</loc><lastmod>2026-05-28T15:14:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/threat-management/alert-management</loc><lastmod>2026-05-28T15:33:37.000Z</lastmod></url><url><loc>https://docs.utmstack.com/siem/threat-management/false-positive-handling</loc><lastmod>2026-05-28T15:35:21.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/introduction</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/creating-configuring-workflows</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/built-in-action-templates</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/built-in-playbooks</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/interactive-console-execution</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/custom-actions</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/proxy-agents</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/soar/use-cases</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/agents-and-syslog/macos</loc><lastmod>2026-05-28T16:22:02.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/agents-and-syslog/windows-agent</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/agents-and-syslog/linux-agent</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/agents-and-syslog/syslog</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/cisco-asa</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/fortigate</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/sophos-xg</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/sonicwall</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/ibm-aix</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/ibm-as400</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/fortiweb</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/pfsense</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/palo-alto</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/mikrotik</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/cisco-switch</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/firepower</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/devices/cisco-meraki</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/databases/oracle</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/xdr/sophos-central</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/xdr/sentinelone</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/xdr/crowdstrike</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/cloud/azure</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/cloud/google-cloud</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/cloud/office365</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/cloud/aws</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/network/netflow</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/hypervisors/vmware-esxi</loc><lastmod>2026-04-22T13:12:45.000Z</lastmod></url><url><loc>https://docs.utmstack.com/integrations/configurations/config-curl</loc><lastmod>2025-11-11T22:43:08.000Z</lastmod></url><url><loc>https://docs.utmstack.com/vulnerability-scanner/vulnerability-scanning/understanding-vulnerability-detection</loc><lastmod>2026-06-01T14:18:49.000Z</lastmod></url><url><loc>https://docs.utmstack.com/vulnerability-scanner/vulnerability-scanning/performing-network-scans</loc><lastmod>2026-05-28T15:55:02.000Z</lastmod></url><url><loc>https://docs.utmstack.com/vulnerability-scanner/vulnerability-scanning/configuring-advanced-scans</loc><lastmod>2026-05-28T15:55:15.000Z</lastmod></url><url><loc>https://docs.utmstack.com/vulnerability-scanner/vulnerability-scanning/detection-use-cases-templates</loc><lastmod>2026-05-28T15:55:11.000Z</lastmod></url><url><loc>https://docs.utmstack.com/vulnerability-scanner/vulnerability-scanning/faq</loc><lastmod>2026-06-04T15:12:14.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/introduction</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/authentication</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/alert-retrieval</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/alert-management</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/log-explorer-search-query</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/incident-management</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/data-sources-agents</loc><lastmod>2026-06-01T20:45:38.000Z</lastmod></url><url><loc>https://docs.utmstack.com/api-documentation/api-documentation/reference-tables</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/overview</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/esmc-eset</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/deceptive-bytes</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/sentinelone</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/kaspersky</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/bitdefender-gravityzone</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/antivirus/crowdstrike</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cisco/asa</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cisco/switch</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cisco/firepower</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cisco/meraki</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cloud/google-cloud</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cloud/azure</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/cloud/aws</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/fortinet/fortigate</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/fortinet/fortiweb</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/generic</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/ibm/aix</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/ibm/as-400</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/json-input</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/linux/rhel-family</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/linux/debian-family</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/linux/general</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/macos</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/mikrotik</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/netflow</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/nids-suricata</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/palo-alto</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/pfsense</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/sonicwall</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/sophos/xg-firewall</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/sophos/sophos-central</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/syslog-cef</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/vmware-esxi</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/microsoft/windows</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/microsoft/office-365</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url><url><loc>https://docs.utmstack.com/rules/microsoft/github</loc><lastmod>2026-06-01T14:01:06.000Z</lastmod></url></urlset>