Log analytics - get sources

Sergei Kiselev 66 Reputation points
2020-12-22T16:06:07.73+00:00

Hi,

Is there any kusto query\log analytics setting to get real sources of rows?
I'll try to explain:
For example, I have VMProcess DataType. I see the data from Virtual Machines in this data type. After a little research, I got the "real" source - the extension for my virtual machine that sends data to log analytics.
I need some approach to get all the "real" sources for any datatype.. Is it possible?
For example, how to understand what sends data to datatypes "UpdateRunProcess", "SecurityDetection", "ProtectionStatus", "ConfigurationChange", "AzureDiagnostics", etc.

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,783 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. SwathiDhanwada-MSFT 17,161 Reputation points
    2020-12-24T13:12:30.077+00:00

    @Sergei Kiselev Welcome to Microsoft Q & A Community Forum. From the information you have provided, I am assuming,you are looking for data collected by different sources and the table name where the data is stored for each of the data source. Here is document which articulates this information. Kindly check and let me know if it satisfies your requirement.

    1 person found this answer helpful.