Skip to content

Commit 618d8ca

Browse files
authored
Merge pull request #96079 from shashishailaj/patch-57
(Azure CXP) Technical Doc Update
2 parents e365a6b + eb21b09 commit 618d8ca

File tree

1 file changed

+13
-0
lines changed

1 file changed

+13
-0
lines changed

articles/sentinel/quickstart-onboard.md

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -28,6 +28,19 @@ To on-board Azure Sentinel, you first need to enable Azure Sentinel, and then co
2828

2929
After you connect your data sources, choose from a gallery of expertly created workbooks that surface insights based on your data. These workbooks can be easily customized to your needs.
3030

31+
>[!NOTE]
32+
> [Azure Sentinel pricing](https://azure.microsoft.com/en-ca/pricing/details/azure-sentinel/) is based on the amount of data ingested in the associated Azure Monitor Log analytics workspace. Some of the following data connectors are not charged for ingestion however there would be some charge associated when you generate any kind of alert using the ingested data stored in Log Analytics workspace which will be charged as per [Azure Monitor Log analytics pricing](https://azure.microsoft.com/en-ca/pricing/details/monitor/).
33+
> - Azure Activity (Activity Logs for azure Operations)
34+
> - Azure Active Directory Identity Protection (For tenants with AAD P2 licenses)
35+
> - Azure Information Protection
36+
> - Azure Advanced Threat Protection (Alerts )
37+
> - Azure Security Center (Alerts)
38+
> - Microsoft Cloud App Security (Alerts only)
39+
> - Microsoft Defender Advanced Threat Protection (Monitoring agent alerts)
40+
> - Office 365 (Exchange and Sharepoint Logs)
41+
>
42+
> Azure AD/Office365 audit logs are not free and offered as a premium tier hence the ingestion of this data is priced on a per-GB basis.
43+
3144

3245
## Global prerequisites
3346

0 commit comments

Comments
 (0)