Microsoft Sentinel & Azure Arc – Troubleshooting Windows Event Logs

This post details troubleshooting steps to take when Windows event logs are not being ingested into Microsoft Sentinel via Azure Arc VMs.

Microsoft Sentinel – Ingesting Windows Server Event Logs from Azure VMs

Ingesting Windows Server event logs into Microsoft Sentinel involves creating a Data Collection Rule for Azure VMs. Subsequent articles will cover on-premises methods.

Microsoft Sentinel – Planning & Architecture

There are many things to consider when implementing Microsoft Sentinel, such as: defining objectives, assessing environments, designing architecture, managing user access, and ensuring continuous improvement.