Edit

ZTSGraph

Communication relationships and interactions between nodes.

Table attributes

Attribute Value
Resource types microsoft.zerotrustsegmentation/segmentationmanagers
Categories Azure Resources, Network, Security
Solutions LogManagement
Basic log No
Ingestion-time DCR support No
Lake-only ingestion Yes
Sample Queries -

Columns

Column Type Description
_BilledSize real The record size in bytes
BytesIn real Number of incoming bytes.
BytesOut real Number of outgoing bytes.
ConnectionsIn real Number of incoming connections.
ConnectionsOut real Number of outgoing connections.
FlowDirection string Direction of network flow (Inbound/Outbound).
_IsBillable string Specifies whether ingesting the data is billable. When _IsBillable is false ingestion isn't billed to your Azure account
LocalIdentifier string VM's MAC address.
LocalIP string IP address.
PacketLastSeenAt datetime Timestamp when the last packet was seen.
PacketsIn real Number of incoming packets.
PacketsOut real Number of outgoing packets.
Port int Network port number.
Protocol string Network protocol used.
RemoteIdentifier string Remote connection's MAC address (when available).
RemoteIP string Remote IP address.
_ResourceId string A unique identifier for the resource that the record is associated with
RunVersion string Run version identifier.
SourceSystem string The type of agent the event was collected by. For example, OpsManager for Windows agent, either direct connect or Operations Manager, Linux for all Linux agents, or Azure for Azure Diagnostics
_SubscriptionId string A unique identifier for the subscription that the record is associated with
TenantId string The Log Analytics workspace ID
TimeGenerated datetime DateTime rounded by the hour.
Type string The name of the table