Forum Discussion
SalmanKhan
Oct 07, 2020Copper Contributor
Connectors and incidents
Hello guys, If we use built-in connectors for Azure Sentinel, would the alerts and incidents get generated automatically, or do we need to create manual rules for generating them in KQL?
rkoivumaa
Oct 08, 2020Copper Contributor
There are quite a lot of templates ready to use with the built-in connectors: https://docs.microsoft.com/en-us/azure/sentinel/tutorial-detect-threats-built-in They need to be turned on manually though 🙂