Forum Discussion
SalmanKhan
Oct 07, 2020Copper Contributor
Connectors and incidents
Hello guys,
If we use built-in connectors for Azure Sentinel, would the alerts and incidents get generated automatically, or do we need to create manual rules for generating them in KQL?
1 Reply
- rkoivumaaCopper ContributorThere are quite a lot of templates ready to use with the built-in connectors: https://docs.microsoft.com/en-us/azure/sentinel/tutorial-detect-threats-built-in They need to be turned on manually though 🙂