Forum Discussion
SimonR
Apr 17, 2020Brass Contributor
Separating Logs for RBAC
Hi, I'm in the process of setting up Sentinel with a number of log sources being sent via CEF. It appears that all the logs will go into the CommonSecurityEvents table which I need to separate ou...
Lewis-H
Apr 20, 2020Iron Contributor
The easiest way to get started is to view the activity logs with the Azure portal. The following screenshot shows an example of role assignment operations in the activity log. It also includes an option to download the logs as a CSV file.
Activity logs using the portal - screenshot
The activity log in the portal has several filters.
Activity logs using the portal - screenshot
The activity log in the portal has several filters.