官术网_书友最值得收藏!

  • Learn Azure Sentinel
  • Richard Diver Gary Bushey Jason S. Rader
  • 207字
  • 2021-06-30 15:08:17

Chapter 2: Azure Monitor – Log Analytics

In this chapter, we will explore the Azure Monitor Log Analytics platform, which is used to store all the log data that will be analyzed by Azure Sentinel. This is the first component that needs to be designed and configured when implementing Azure Sentinel, and will require some ongoing maintenance to configure the data storage options and control the costs associated with the solution.

This chapter will also explain how to create a new workspace using the Azure portal, PowerShell, and the CLI. Once a workspace has been created, we will learn how to attach various resources to it so that information can be gathered, and we will explore the other navigation menu options.

By the end of this chapter you will know how to set up a new workspace, connect to resources to gather data, enable Azure Sentinel for data analysis, and configure some of the advanced features to ensure security and cost management.

We will cover the following topics in this chapter:

  • Introduction to Azure Monitor Log Analytics
  • Planning a workspace
  • Creating a workspace
  • Managing permissions of the workspace
  • Enabling Azure Sentinel
  • Exploring the Azure Sentinel Overview page
  • Connecting your first data source
  • Advanced settings for Log Analytics
主站蜘蛛池模板: 申扎县| 乌拉特后旗| 南平市| 嘉善县| 安达市| 衡阳县| 济源市| 长岭县| 平湖市| 平泉县| 泽库县| 兴隆县| 乌海市| 河北区| 彩票| 仁布县| 渭南市| 临武县| 栖霞市| 乐东| 中宁县| 宜城市| 台州市| 双流县| 胶州市| 诏安县| 阿拉善左旗| 金门县| 屏山县| 平湖市| 福建省| 西贡区| 宁津县| 曲麻莱县| 宁海县| 三穗县| 大城县| 万州区| 莫力| 平阳县| 紫金县|