Does the AMA ingest the whole Securirty Log when enabled?

Jeremy Hagan 0 Reputation points
2023-03-01T04:43:46.8566667+00:00

We are soon going to enable the Sentinel connector to collect Security Logs via AMA. Will all existing logs be ingested or will it only ingest new events?

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,566 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,261 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Fabricio Godoy 2,626 Reputation points
    2023-03-01T05:03:26.4766667+00:00

    Hello @Jeremy Hagan

    Only new events.

    I hope this is help you.

    Regards

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.