Skip to content

Latest commit

 

History

History
31 lines (23 loc) · 1.57 KB

windows-forwarded-events.md

File metadata and controls

31 lines (23 loc) · 1.57 KB
title description author ms.topic ms.date ms.service ms.author ms.collection
Windows Forwarded Events connector for Microsoft Sentinel
Learn how to install the connector Windows Forwarded Events to connect your data source to Microsoft Sentinel.
cwatson-cat
how-to
04/26/2024
microsoft-sentinel
cwatson
sentinel-data-connector

Windows Forwarded Events connector for Microsoft Sentinel

You can stream all Windows Event Forwarding (WEF) logs from the Windows Servers connected to your Microsoft Sentinel workspace using Azure Monitor Agent (AMA). This connection enables you to view dashboards, create custom alerts, and improve investigation. This gives you more insight into your organization’s network and improves your security operation capabilities. For more information, see the Microsoft Sentinel documentation.

This is autogenerated content. For changes, contact the solution provider.

Connector attributes

Connector attribute Description
Log Analytics table(s) WindowsEvents
Data collection rules support Azure Monitor Agent DCR
Supported by Microsoft Corporation

Next steps

For more information, go to the related solution in the Azure Marketplace.