Jun 11 2021 02:54 PM
The FAQ on the pricing page for sentinel has a section entitled "What data can be ingested at no cost with Azure Sentinel?". The response is:
"Azure Activity Logs, Office 365 Audit Logs (all SharePoint activity and Exchange admin activity) and alerts from Microsoft Defender products (Azure Defender, Microsoft 365 Defender, Microsoft Defender for Office 365, Microsoft Defender for Identity, Microsoft Defender for Endpoint), Azure Security Center and Microsoft Cloud App Security can be ingested at no additional cost into both Azure Sentinel and Azure Monitor Log Analytics."
I have turned up an instance of Sentinel and checked off only products described in the answer above. However, my account is being billed for the data ingested to Log Analytics, but not Sentinel, as far as I can tell. Can anyone help me understand what it is i'm being charged for?
Jun 14 2021 05:44 AM
SolutionJun 14 2021 06:15 AM
Jun 14 2021 06:25 AM
Jun 14 2021 05:44 AM
Solution