250 - A look at Microsoft Sentinel auxiliary logs
Episode 250 of the Ctrl+Alt+Azure podcast, hosted by Tobias Zimmergren, Jussi Roine, titled "250 - A look at Microsoft Sentinel auxiliary logs" was published on August 7, 2024 and runs 26 minutes.
August 7, 2024 ·26m · Ctrl+Alt+Azure
Summary
We haven't talked about Microsoft Sentinel in a while. This week, we take a look at auxiliary logs - a new capability that Sentinel benefits from. What is it, and why and when should you use it? Also, Jussi asks Tobi an unexpected question.(00:00) - Intro and catching up.(03:27) - Show content starts.Show links- Setting up auxiliary plan- Create a destination table using the API- Give us feedback!
Episode Description
We haven't talked about Microsoft Sentinel in a while. This week, we take a look at auxiliary logs - a new capability that Sentinel benefits from. What is it, and why and when should you use it? Also, Jussi asks Tobi an unexpected question.
(00:00) - Intro and catching up.
(03:27) - Show content starts.
Show links
- Setting up auxiliary plan
- Create a destination table using the API