An Azure analytics service that brings together data integration, enterprise data warehousing, and big data analytics. Previously known as Azure SQL Data Warehouse.
Thanks for reaching out to Microsoft Q&A.
The “application_name” field in SQLAudit logs typically represents the name of the client application that executed the statement causing the audit event. However, the specific value “DWShellDb” does not appear to be widely documented.
The Azure Synapse Toolbox, which you found on GitHub, is a collection of tools and scripts to help manage and monitor Azure Synapse Analytics. However, it doesn’t provide specific information about “DWShellDb”.
It’s possible that “DWShellDb” could be an internal traffic client, or a system process related to Azure Synapse or the Dedicated SQL Pool. For a definitive answer, I would recommend reaching out to Microsoft Support or the Azure Synapse community.
Hope this helps. Do let us know if you any further queries.