Data Connectors onboarding | Windows Security Events | Syslog (Linux)

แชร์
ฝัง

ความคิดเห็น • 24

  • @jesuseduardofonsecahernand4374
    @jesuseduardofonsecahernand4374 2 หลายเดือนก่อน

    Really appreciate the explanation of this video, thank you so much. Best regards

  • @DaljeetSinghh
    @DaljeetSinghh ปีที่แล้ว +2

    What a nice explanation.
    Understood the concept !
    Thanks for this awesome video ..👍

  • @anandsinghdhouni
    @anandsinghdhouni 3 หลายเดือนก่อน

    Thanks for making such a valuable content

  • @jesuseduardofonsecahernand4374
    @jesuseduardofonsecahernand4374 2 หลายเดือนก่อน

    Subscribed ty.

  • @cianmclaughlin6375
    @cianmclaughlin6375 ปีที่แล้ว +2

    Great video. Can you do one a video on how this would be configured for on-premise also?

  • @tenzinnamgyel1588
    @tenzinnamgyel1588 11 หลายเดือนก่อน

    great tut

    • @SudoRootcast
      @SudoRootcast  10 หลายเดือนก่อน

      Glad to hear that

  • @rawitez33
    @rawitez33 ปีที่แล้ว +1

    Hi bro, are you doing this playlist with free trail subscription or paid vesion, bcz I would not to see the Dataconnectors and incident of it.
    Btw Thanks bro clear explained.

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      You need to add all the data connector from Content Hub as a new process, Thanks.

  • @vishalrameshraodhatrak6008
    @vishalrameshraodhatrak6008 9 หลายเดือนก่อน

    Hi....I need your help to understand Defender for IoT integration (Linux Base) with Azure Sentinel...How may I contact you ?

  • @VinayaROCKS
    @VinayaROCKS ปีที่แล้ว +1

    nice video, what to do if we wish to connect onprem windows machines events to AMA

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว +1

      In case of on prem or other cloud machines, Azure Arc is the Solution. Onboard the Machines to Arc and then easily you can install the monitoring agent on them.

    • @VinayaROCKS
      @VinayaROCKS ปีที่แล้ว

      @@SudoRootcast thank you for response. Can we forward the events to azure ? Is this possible

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      @@VinayaROCKS Yes After Arc installation you can do most of the things like you do for Azure Virtual machines.

  • @vinayrb8682
    @vinayrb8682 ปีที่แล้ว

    In case of Windows security events, during add resource section what's the purpose of select of scope? if No windows VM's in the scope part what to select? scope dialog box is showing empty , no machines to select scope

    • @rawitez33
      @rawitez33 ปีที่แล้ว

      As of my opinion before you selecting any Vm's need to have an existing Vm's on a Virtual space.

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      Hello Vinay, If there is no windows machines this will not impact anything. But once you will create a windows machine and if you have scope already selected like subscription they will be onboarded to the sentinel connector. That's the use of DCR.

  • @123ranaldo
    @123ranaldo ปีที่แล้ว

    I didn't have any VM's ? so do i have to create one?

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      You don't need to you you don't have windows machines.

  • @MsVaibhav18
    @MsVaibhav18 ปีที่แล้ว

    How to onboard windows workstations with sentinel.( Non Azure VM )

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      Please use Azure ARC for the one prem or other cloud Virtual machines.
      azure.microsoft.com/en-in/products/azure-arc
      learn.microsoft.com/en-us/azure/cloud-adoption-framework/manage/hybrid/server/best-practices/arc-azure-sentinel

  • @karthikmathen1256
    @karthikmathen1256 ปีที่แล้ว

    Awesome video
    I would like to interested take training from you.

    • @SudoRootcast
      @SudoRootcast  ปีที่แล้ว

      Hello Karthik, I hope you are well.
      Sorry I do not provide personal training at the moment, Being said that you can always send me your queries through email and I will be happy to assist you. Thank You.