wwlpublish Connect Windows hosts to Microsoft Sentinel - Training
- This module teaches how to
collect
Windowssecurity events
with Microsoft Sentinel using theSecurity Events
connector. Learners will be able to connectAzure
andnon-Azure
Windows
hosts toSentinel
and configure the Log Analytics agent for Sysmon events.
‣
Introduction
‣
Plan for Windows hosts security events connector
‣
Connect using the Windows Security Events via AMA Connector
‣
Connect using the Security Events via Legacy Agent Connector
‣
Collect Sysmon event logs
‣
Knowledge check
‣