How can i make icm incidents directly based off kusto logs?

ar-3605 1 Reputation point
2022-08-30T18:15:50.317+00:00

Basically something like this https://eng.ms/docs/products/geneva/alerts/genevaautomation/tutorials/triagerouting , but I want the trigger to be when one specific log is found and is checked for in time intervals...etc. Is this possible?

Community Center | Not monitored
{count} votes

1 answer

Sort by: Most helpful
  1. Maxim Sergeev 6,586 Reputation points Microsoft Employee
    2022-08-30T21:19:13.903+00:00

    Hi @ar-3605 ,

    This is a public Q&A community. If you need assistance with kusto and ICM, please follow internal communications.

    P.S. it is possible, you need to create geneva automation workflow that will include your query and when to trigger another geneva automation workflow that will create an ICM ticket

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.