![]() It’s best to use the same value as the workspace.įigure 5: Viewing data gathered in the Microsoft Sentinel workbook for Office 365 Customizing Workbooks Sentinel prompts you to select an Azure region. Select the workbook and Click Save to add the workbook to the workspace. Search for the Office 365 workbook (Figure 2). When the new workspace is available, select Workbooks under the Threat management section. For now, we’ll concentrate on adding the Office 365 workbook to our workspace. You can also create custom workbooks from scratch or customize a workbook created from a template. Many different workbook templates are available to analyze data with Microsoft Sentinel, including a workbook created by Microsoft to analyze Office 365 data imported from the audit log ( other workbook templates are available to build out the analysis of data associated with Office 365 operations). The next step is to configure a workbook within the workspace. Select the workspace and click Add to add Microsoft Sentinel to the workspace. Wait for the deployment of the new workspace to finish. Figure 1: Creating a new log analytics workspace for Microsoft Sentinel ![]()
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |