Skip to content

Latest commit

 

History

History
39 lines (24 loc) · 862 Bytes

azfwthreatintel.md

File metadata and controls

39 lines (24 loc) · 862 Bytes
title description ms.topic ms.service ms.author author ms.date
Example log table queries for AZFWThreatIntel
Example queries for AZFWThreatIntel log table
reference
azure-monitor
edbaynash
EdB-MSFT
02/18/2024

Queries for the AZFWThreatIntel table

Threat intelligence logs

Threat intelligence events recognized by the firewall.

AZFWThreatIntel
| take 100

All firewall decisions

All decision taken by firewall. Contains hits on network, application and NAT rules, as well as threat intelligence hits and IDPS signature hits.

AZFWNetworkRule
| union AZFWApplicationRule, AZFWNatRule, AZFWThreatIntel, AZFWIdpsSignature
| take 100