Forum Discussion
gsingh_
Dec 18, 2020Copper Contributor
Alert to get notified if an external connected device become unreachable.
Hi Guys
I would like to setup an alert to get notified if an external connected device (E.g. Cisco ASA) loose connection with RSyslog/Sentinel. I wonder what field in the table I can pull with the logic and would be great if some one can share a sample KQL query.. thanks
1 Reply
- GaryBusheyBronze Contributor
gsingh_ Take a look at this blog post as a good starting point