Forum Discussion
abon13
Oct 29, 2023Brass Contributor
Create alerts for Log Analytics Tables when it stops receiving log data
HI,
I got a CommonSecurityLog table and it suddently stopped receiving data from syslog for few days. Wanted to check if we can create alerts when a table is empty i.e. when it stops receiving data from syslog server ?
If yes, how to do so
Thank you !!
- Some examples from Rod: https://rodtrent.substack.com/p/how-to-be-notified-when-microsoft
2 Replies
- juliansperlingBrass ContributorThe Simplest way would be to count the amount of entries in your Table and trigger an Alert if it goes to 0 over a specified amount of Time - In case of a Syslog Server maybe something like 24 Hours?
- Clive_WatsonBronze ContributorSome examples from Rod: https://rodtrent.substack.com/p/how-to-be-notified-when-microsoft