Jun 11 2020 11:03 PM
Hi,
We would like to install a log analytics agent for Azure Sentinel on a host on which an SCOM agent is already running. What is the best way to proceed, so that SCOM is still enabled, and Security Events are being forwarded to the log analytics workspace for Sentinel?
Thanks in advance!
Jun 12 2020 03:50 AM
Solution@csmits From the Overview of Azure Monitor agents page: https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agents-overview
The Log Analytics agent collects monitoring data from the guest operating system and workloads of virtual machines in Azure, other cloud providers, and on-premises. It collects data into a Log Analytics workspace. The Log Analytics agent is the same agent used by System Center Operations Manager, and you can multihome agent computers to communicate with your management group and Azure Monitor simultaneously. This agent is also required by certain insights and solutions in Azure Monitor.
Aug 14 2020 04:56 AM
Could you please share the link to download the binaries for Log Analytics agent (Microsoft Monitoring Agent) which can be upgraded over SCOM Agent.
Thanks!
Sreejeet