-
Notifications
You must be signed in to change notification settings - Fork 142
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Deploy Azure Sentinel #256
Comments
To light up Azure Sentinel with azurerm, it appears like we'll need to specify which connectors to use. The team discussed these seem like natural choices, but let's discuss if they're not the right ones:
Which if any of these should we enable out-of-the-box? |
@Phydeauxman pointed us towards simply turning on Sentinel via the the |
@glennmusa Lets chat since Sentinel is not something that you deploy, you deploy solutions to LA workspaces which tell LA what to collet and how to store it for sentinel, but there maybe a need to discuss workspace deployments since those may need some network and region discussions instead of just one workspace. |
Description
Deploy Azure Sentinel, making it available in Tier 1, with sensible defaults, and connected to the Log Analytics workspace in Tier 1. (Depends on finishing #128).
Acceptance Criteria
The text was updated successfully, but these errors were encountered: