what is the range of threat retention days for azure sql db ?

Ramesh Tathe 1 Reputation point
2021-06-07T13:01:02.323+00:00

what is the range of threat retention days for azure sql db ? if the range is (1-y) then 0 is the forever retention days ?

is 0 threat retention days means retain forever ?

Azure SQL Database
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Oury Ba-MSFT 20,716 Reputation points Microsoft Employee
    2021-06-10T03:37:46.857+00:00

    Hi @Ramesh Tathe Thank you for posting your question. Sorry for the late reply.
    is 0 threat retention days means retain forever ?
    Yes, ,0 =forever. I believe it is in the audit setup/ configuration. Some aspect of threat data retention is controlled by how you configure your storage account(s) where the corresponding audit events flow.
    If you are you refereeing to threat detections (alerts)? Those are stored in Azure Security Center.
    Hope that helps

    Regards,
    Oury


  2. tomerr 11 Reputation points Microsoft Employee
    2021-06-11T10:04:21.967+00:00

    Hi,

    Azure SQL DB Advanced Threat Protection (SQL ATP) data (alerts) is stored in Azure Security Center, for 90 days. If you want to store it for a longer period of time, you can use the continuous-export functionality.

    Regards,

    Tomer


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.