May 04 2020
03:19 AM
- last edited on
Nov 02 2021
05:53 PM
by
TechCommunityAP
May 04 2020
03:19 AM
- last edited on
Nov 02 2021
05:53 PM
by
TechCommunityAP
Hi Everyone,
Can we use a single Linux/ Windows agent to collect logs from multiple log sources in Sentinel?
Regards,
Mitesh Agrawal
May 04 2020 03:26 AM
Yes you can do that with Windows. Though I wouldn't be able to tell how to do that in Linux.
May 04 2020 03:31 AM
You can configure the MMA (Windows and Linux) in the Log Analytics - Advanced Settings
You can add multiple sources to each platform. https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agent-data-sources