Microsoft Sentinel Blog

Microsoft Entra Tech Accelerator: Part 2 of 2
Jul 20 2023, 08:00 AM - 10:30 AM (PDT)
Microsoft Tech Community
Options
407
Matt_Lowe on Jun 29 2023 03:42 PM
3,507
Matt_Lowe on Jun 15 2023 02:36 PM
1,964
JulianGonzalez on May 23 2023 07:00 AM
3,143
NChristis on May 22 2023 10:03 AM
5,063
Matt_Lowe on May 02 2023 04:27 PM
6,132
Israel_Aloni on Apr 24 2023 05:57 AM
13.9K
Javier Soriano on Apr 19 2023 08:28 AM
11.8K
Matt_Lowe on Mar 31 2023 02:42 PM
5,992
Israel_Aloni on Mar 28 2023 05:45 AM
2,434
Will King on Mar 28 2023 04:15 AM
6,042
kavishbakshi on Mar 20 2023 05:54 AM
5,819
Preeti_Krishna on Mar 09 2023 01:00 PM
4,516
sowmyam on Mar 01 2023 03:25 AM
7,957
FarahCh on Mar 01 2023 03:22 AM
7,163
Ashwin_Patil on Feb 24 2023 07:45 AM
7,119
Matt_Lowe on Feb 13 2023 02:51 PM
5,201
Jeremy Tan on Feb 08 2023 01:47 AM
2,725
OferInbar on Feb 03 2023 04:22 AM
19.6K
vani_asawa on Feb 02 2023 03:53 AM
10.8K
MichalShechter on Jan 18 2023 08:31 AM
4,417
KobyMymon on Jan 16 2023 06:44 AM
3,273
Sylvie_Liu on Jan 12 2023 08:53 AM
8,052
inbalsilis on Jan 11 2023 10:46 AM
4,747
PrateekTaneja on Jan 03 2023 03:56 AM
4,995
Pete Bryan on Dec 14 2022 10:48 AM
9,445
kavishbakshi on Dec 13 2022 10:36 AM
4,291
skochavi on Dec 13 2022 05:01 AM
5,015
liortamir on Dec 12 2022 04:17 AM

Latest Comments

This is amazing and very promising, thank you for this extremely informative article.
0 Likes
This guide is old and out of date. Workarounds are to use another connector that allows to directly query the log analytics workspace Splunk Add on for Microsoft Azure | Splunkbase And setting this up to run every 5 minutes with a query like: SecurityIncident | where ingestion_time() > ago(6m) Or ex...
0 Likes
Thanks dog :)I didn't think AMA was supported on wind10, just servers.And what's DCA?
0 Likes
Hello @bobsyouruncle , the document actually says to use AMA. Create Deployment Template We can easily add all those ARM templates to an ‘Azure Sentinel & Win10 Workstation’ basic template. We just need to make sure we install the Azure Monitor Agent instead of the Log Analytics one, and enable the ...
1 Likes
is this article now obsolete?shouldn't we be using the AMA agent?
0 Likes