+ExpressRoute Traffic Collector enables sampling of network flows sent over your ExpressRoute circuits. Flow logs are sent to an export destination where you can create your own log queries for further analysis. Supported destinations include [Log Analytics](/azure/azure-monitor/logs/log-analytics-overview), [Event Hubs](/azure/event-hubs/event-hubs-about), and Storage Accounts. You can also export the data to any visualization tool or SIEM (Security Information and Event Management) of your choice. Flow logs can be enabled for both private peering and Microsoft peering with ExpressRoute Traffic Collector.
0 commit comments