Azure logs from different subscriptions

allen schroers 1 Reputation point
2021-03-03T23:15:53.157+00:00

Our company has 9 Azure subscriptions - can we send logs from all 9 to a single IP address that is a collector inside Azure so it can send them to our on premise SIEM solution?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,664 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. James Westall 161 Reputation points
    2021-03-04T07:31:12.667+00:00

    Hey @allen schroers

    You can most definitely ship logs to a remote location, provided you have access to the relevant configuration areas & your SIEM Supports shipping. The following links should provide some context.

    Azure AD activity logs in Azure Monitor
    Create diagnostic settings to send platform logs and metrics to different destinations

    Cheers,

    James

    If my answer helped your problem, please select mark as answer.