Microsoft Security Tech Accelerator
Dec 06 2023, 07:00 AM - 12:00 PM (PST)
Microsoft Tech Community

Syslog notifications - duplicated by Sentinel?

Silver Contributor

If we are using Sentinel with the M365 Defender connector, is there any reason to configure the Syslog notifications for MDI, using these instructions Microsoft Defender for Identity notifications in Microsoft 365 Defender - Microsoft Defender for Ide...

1 Reply

@Dean Gross 

Currently, the only way to forward MDI health alerts is using the syslog notifications.

Besides that, you could use the Sentinel connector in M365 defender only.