Skip to content

Commit 4f4a2cd

Browse files
authored
Merge pull request #97787 from shashishailaj/patch-62
(Azure CXP) Doc Update
2 parents 12e95ca + d52128e commit 4f4a2cd

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

articles/sentinel/connect-office-365.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -38,12 +38,12 @@ You can stream audit logs from [Office 365](https://docs.microsoft.com/office365
3838

3939
1. In Azure Sentinel, select **Data connectors** and then click the **Office 365** tile.
4040

41-
2. If you have not already enabled it, you can do so by going to **Data Connectors** blade and selecting **Office 365** connector. Here you can click the **Open Connector Page** and under configuration section **Enable the Office 365 solution on your workspace** use the **Install solution** button to enable it. If it was already enabled, it will be identified in the connection screen as already enabled.
41+
2. If you have not already enabled it, you can do so by going to **Data Connectors** blade and selecting **Office 365** connector. Here you can click the **Open Connector Page** and under configuration section labelled **Enable the Office 365 solution on your workspace** use the **Install solution** button to enable it. If it was already enabled, it will be identified in the connection screen as already enabled.
4242
1. Office 365 enables you to stream data from multiple tenants to Azure Sentinel. For each tenant you want to connect to, add the tenant under **Connect tenants to Azure Sentinel**.
4343
1. An Active Directory screen opens. You are prompted to authenticate with a global admin user on each tenant you want to connect to Azure Sentinel, and provide permissions to Azure Sentinel to read its logs.
44-
5. Under Stream Office 365 activity logs, click **Select** to choose which log types you want to stream to Azure Sentinel. Currently, Azure Sentinel supports Exchange and SharePoint.
44+
5. Under the tenant list you would see the Azure AD directory ID (tenant ID) and two checkboxes for Exchange and Sharepoint logs . You can select any or all the listed services which you would like to ingest in Sentinel. Currently, Azure Sentinel supports Exchange and SharePoint logs within existing Office365 services.
4545

46-
4. Click **Apply changes**.
46+
4. Once you have selected the services (Exchange, sharepoint etc. ) you can click save on the tenant addition frame on the page.
4747

4848
3. To use the relevant schema in Log Analytics for the Office 365 logs, search for **OfficeActivity**.
4949

0 commit comments

Comments
 (0)