Forum Discussion
KoKyi
Nov 04, 2019Copper Contributor
Does port enumeration attack make sentinel create incident?
I am testing Azure Sentinel. I have a data connector,windows firewall.The windows firewall agent is on a window machine. I scanned windows machine with nmap. I get logs from firewall and show in sent...
akhilnz
Nov 04, 2019Copper Contributor
Hi KoKyi, If you think you need to treat particular event as a case. You can create an alert for it, by going to Configuration-> Analytics. There are lots of alert rule template to pick from.
- KoKyiNov 04, 2019Copper ContributorHi akhilnx, I see now. Thanks for your help.