Share via

Analytic Rules for Log Forwarder

Lumka Langa 20 Reputation points
2024-12-12T10:59:02.2+00:00

Good day,

May you kindly assist with KQL queries to create these 4 analytic on our environment.

Log Rate-Insufficient

Agent Heartbeat Latency

Agent Heartbeat Monitor

Agent-Health-Alert

Azure Monitor
Azure Monitor

An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.

Microsoft Security | Microsoft Sentinel
0 comments No comments

Answer accepted by question author

Clive Watson 7,951 Reputation points MVP
2024-12-16T13:51:19.9933333+00:00

A lot of this is covered in this recent article, I hope this helps get you started:

https://charbelnemnom.com/monitor-data-connectors-in-microsoft-sentinel/

Was this answer helpful?

0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.