Microsoft Sentinel & Azure Arc – Troubleshooting Windows Event Logs

This post details troubleshooting steps to take when Windows event logs are not being ingested into Microsoft Sentinel via Azure Arc VMs.

Microsoft Sentinel – Ingesting Windows Server Event Logs from Azure VMs

Ingesting Windows Server event logs into Microsoft Sentinel involves creating a Data Collection Rule for Azure VMs. Subsequent articles will cover on-premises methods.