sameer fakhoury
  • Home
  • CTF Writeups
  • Course Summaries
  • Cyber Reports
  • Articles
  • Event Notes
  • About Me
Connect syslog data sources to Microsoft Sentinel

Connect syslog data sources to Microsoft Sentinel

  • wwlpublish Connect syslog data sources to Microsoft Sentinel - Trainingwwlpublish Connect syslog data sources to Microsoft Sentinel - Training
  • This module covers configuring Azure Monitor Agent for Syslog data collection on Linux, including installation, setup, and verification of Syslog logs in Microsoft Sentinel. Learners will be able to describe Data Collection Rules, install and configure the necessary extensions, and create KQL parsers for analyzing Syslog data.
‣

Introduction

‣

Plan for syslog data collection

‣

Collect data from Linux-based sources using syslog

‣

Configure the Data Collection Rule for Syslog Data Sources

‣

Parse syslog data with KQL

‣

Knowledge check

‣

Summary and resources

©sameer fakhoury

GitHubLinkedIn