Skip to content

Commit 00f926d

Browse files
authored
Merge pull request #183406 from shhazam-ms/Fastlane--10.5.4
Fastlane 10.5.4
2 parents 19329aa + a90f148 commit 00f926d

File tree

1 file changed

+15
-5
lines changed

1 file changed

+15
-5
lines changed

articles/defender-for-iot/organizations/release-notes.md

Lines changed: 15 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -33,11 +33,21 @@ Microsoft plans to release updates for Defender for IoT no less than once per qu
3333

3434
## December 2021
3535

36-
**Apache Log4j vulnerability**
36+
- [Enhanced integration with Microsoft Sentinel (Preview)](#enhanced-integration-with-microsoft-sentinel-preview)
37+
- [Apache Log4j vulnerability](#apache-log4j-vulnerability)
38+
- [Alerting](#alerting)
39+
40+
### Enhanced integration with Microsoft Sentinel (Preview)
41+
42+
The new **IoT OT Threat Monitoring with Defender for IoT solution** is available and provides enhanced capabilities for Microsoft Defender for IoT integration with Microsoft Sentinel. The **IoT OT Threat Monitoring with Defender for IoT solution** is a set of bundled content, including analytics rules, workbooks, and playbooks, configured specifically for Defender for IoT data. This solution currently supports only Operational Networks (OT/ICS).
43+
44+
For information on integrating with Microsoft Sentinel, see [Tutorial: Integrate Defender for Iot and Sentinel](/azure/sentinel/iot-solution?tabs=use-out-of-the-box-analytics-rules-recommended)
45+
46+
### Apache Log4j vulnerability
3747

3848
Version 10.5.4 of Microsoft Defender for IoT mitigates the Apache Log4j vulnerability. For details, see [the security advisory update](https://techcommunity.microsoft.com/t5/microsoft-defender-for-iot/updated-15-dec-defender-for-iot-security-advisory-apache-log4j/m-p/3036844).
3949

40-
**Alerting**
50+
### Alerting
4151

4252
Version 10.5.4 of Microsoft Defender for IoT delivers important alert enhancements:
4353

@@ -46,7 +56,7 @@ Version 10.5.4 of Microsoft Defender for IoT delivers important alert enhancemen
4656

4757
These changes reduce alert volume and enable more efficient targeting and analysis of security and operational events.
4858

49-
### Alerts permanently disabled
59+
#### Alerts permanently disabled
5060

5161
The alerts listed below are permanently disabled with version 10.5.4. Detection and monitoring are still supported for traffic associated with the alerts.
5262

@@ -56,7 +66,7 @@ The alerts listed below are permanently disabled with version 10.5.4. Detection
5666
- Unauthorized HTTP Server
5767
- Abnormal usage of MAC Addresses
5868

59-
### Alerts disabled by default
69+
#### Alerts disabled by default
6070

6171
The alerts listed below are disabled by default with version 10.5.4. You can re-enable the alerts from the Support page of the sensor console, if required.
6272

@@ -77,7 +87,7 @@ Disabling these alerts also disables monitoring of related traffic. Specifically
7787
- Unauthorized HTTP User Agent alert and HTTP User Agents Data Mining traffic
7888
- Unauthorized HTTP SOAP Action and HTTP SOAP Actions Data Mining traffic
7989

80-
### Updated alert functionality
90+
#### Updated alert functionality
8191

8292
**Unauthorized Database Operation alert**
8393
Previously, this alert covered DDL and DML alerting and Data Mining reporting. Now:

0 commit comments

Comments
 (0)