CommonSecurityLog

163 columns from 0 Azure resource types.

PII

This table is for collecting events in the Common Event Format, that are most often sent from different security appliances such as Check Point, Palo Alto and more.

Source: Microsoft Learn

Attributes

Resource types
microsoft.securityinsights/cef, microsoft.compute/virtualmachines, microsoft.conenctedvmwarevsphere/virtualmachines, microsoft.azurestackhci/virtualmachines, microsoft.scvmm/virtualmachines, microsoft.compute/virtualmachinescalesets
Categories
Security
Solutions
Security, SecurityInsights
Basic log
Yes
Ingestion-time DCR support
Yes
Lake-only ingestion
Yes
Sample Queries
Yes

Columns

163 columns in this table.

Routing resource types

No resource types in the current bundle route into this table.