Does the AMA ingest the whole Securirty Log when enabled?

Jeremy Hagan 0 Reputation points
2023-03-01T04:43:46.8566667+00:00

We are soon going to enable the Sentinel connector to collect Security Logs via AMA. Will all existing logs be ingested or will it only ingest new events?

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,782 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
969 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Fabricio Godoy 2,601 Reputation points
    2023-03-01T05:03:26.4766667+00:00

    Hello @Jeremy Hagan

    Only new events.

    I hope this is help you.

    Regards

    0 comments No comments