Forum Discussion
Queries on Microsoft Azure ATP
Hi Astrid,
Thank you for the quick and descriptive response. I have a few follow-up queries.
1) Would I be able to modify the certificate used, based on my requirement, for the Azure ATP service and ATP Sensor communication and for Syslog integration with Splunk over TLS connection?
2) I understand logs don't purged in Azure ATP, but may I know what would happen to the logs after 6 Months?
Thank you.
Hi Karthik,
1) Would I be able to modify the certificate used, based on my requirement, for the Azure ATP service and ATP Sensor communication and for Syslog integration with Splunk over TLS connection?
No, you are not able to modify the certificate for the Azure ATP Service/sensor communications - I'd be interested in understanding what your specific requirements are not met by the current secured connection (feel free to Private message me with the information if you are able to share in this forum).
You also cannot modify the syslog certificate from the Azure ATP side.
2) I understand logs don't purged in Azure ATP, but may I know what would happen to the logs after 6 Months?
Our data management policies can be found here: https://docs.microsoft.com/en-us/azure-advanced-threat-protection/atp-privacy-compliance For information about Azure ATP trust and compliance, see the Service Trust portal and the Microsoft 365 Enterprise GDPR Compliance site.
Regards,
Astrid