Skip to content

Commit 7d3a5d5

Browse files
committed
Merge branch 'main' of https://github.com/MicrosoftDocs/azure-docs-pr into logrhythm
2 parents a5e442a + b288df7 commit 7d3a5d5

File tree

10 files changed

+79
-17
lines changed

10 files changed

+79
-17
lines changed

articles/container-apps/overview.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -48,13 +48,13 @@ With Azure Container Apps, you can:
4848

4949
- [**Run containers from any registry**](containers.md), public or private, including Docker Hub and Azure Container Registry (ACR).
5050

51-
- [**Use the Azure CLI extension or ARM templates**](get-started.md) to manage your applications.
51+
- [**Use the Azure CLI extension, Azure portal or ARM templates**](get-started.md) to manage your applications.
5252

5353
- [**Provide an existing virtual network**](vnet-custom.md) when creating an environment for your container apps.
5454

5555
- [**Securely manage secrets**](manage-secrets.md) directly in your application.
5656

57-
- [**View application logs**](monitor.md) using Azure Log Analytics.
57+
- [**Monitor your apps**](monitor.md) using Azure Log Analytics.
5858

5959
<sup>1</sup> Applications that [scale on CPU or memory load](scale-app.md) can't scale to zero.
6060

articles/defender-for-cloud/defender-for-sql-usage.md

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,7 @@ Microsoft Defender for SQL servers on machines extends the protections for your
3030
- [Connect your GCP project to Microsoft Defender for Cloud](quickstart-onboard-gcp.md)
3131

3232
> [!NOTE]
33-
> Enable database protection for your multicloud SQL servers through the AWS connector](quickstart-onboard-aws.md?pivots=env-settings#connect-your-aws-account) or the [GCP connector](quickstart-onboard-gcp.md?pivots=env-settings#configure-the-databases-plan).
33+
> Enable database protection for your multicloud SQL servers through the [AWS connector](quickstart-onboard-aws.md?pivots=env-settings#connect-your-aws-account) or the [GCP connector](quickstart-onboard-gcp.md?pivots=env-settings#configure-the-databases-plan).
3434
3535
This plan includes functionality for identifying and mitigating potential database vulnerabilities and detecting anomalous activities that could indicate threats to your databases.
3636

@@ -44,8 +44,7 @@ Learn more about [vulnerability assessment for Azure SQL servers on machines](de
4444
|----|:----|
4545
|Release state:|General availability (GA)|
4646
|Pricing:|**Microsoft Defender for SQL servers on machines** is billed as shown on the [pricing page](https://azure.microsoft.com/pricing/details/defender-for-cloud/)|
47-
|Protected SQL versions:|[SQL Server versions currently supported by Microsoft](/mem/configmgr/core/plan-design/configs/support-for-sql-server-versions) in:
48-
<br>- [SQL on Azure virtual machines](/azure/azure-sql/virtual-machines/windows/sql-server-on-azure-vm-iaas-what-is-overview)<br>- [SQL Server on Azure Arc-enabled servers](/sql/sql-server/azure-arc/overview)<br>- On-premises SQL servers on Windows machines without Azure Arc<br>|
47+
|Protected SQL versions:|[SQL Server versions currently supported by Microsoft](/mem/configmgr/core/plan-design/configs/support-for-sql-server-versions) in: <br>- [SQL on Azure virtual machines](/azure/azure-sql/virtual-machines/windows/sql-server-on-azure-vm-iaas-what-is-overview)<br>- [SQL Server on Azure Arc-enabled servers](/sql/sql-server/azure-arc/overview)<br>- On-premises SQL servers on Windows machines without Azure Arc<br>|
4948
|Clouds:|:::image type="icon" source="./media/icons/yes-icon.png"::: Commercial clouds<br>:::image type="icon" source="./media/icons/yes-icon.png"::: Azure Government<br>:::image type="icon" source="./media/icons/no-icon.png"::: Azure China 21Vianet|
5049

5150
## Set up Microsoft Defender for SQL servers on machines

articles/defender-for-cloud/multicloud.yml

Lines changed: 8 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -34,7 +34,11 @@ landingContent:
3434
url: quickstart-onboard-machines.md?pivots=azure-arc
3535
- text: Enable enhanced security for your multicloud resources
3636
url: enable-enhanced-security.md
37-
37+
- linkListType: reference
38+
links:
39+
- text: Troubleshooting multicloud connectors
40+
url: troubleshooting-guide.md#troubleshooting-the-native-multicloud-connector
41+
3842
# Card
3943
- title: Defend Amazon AWS resources
4044
linkLists:
@@ -55,7 +59,7 @@ landingContent:
5559
- text: Enable Defender for Containers for your AWS EKS containers
5660
url: defender-for-containers-enable.md?tabs=aks-deploy-portal%2Ck8s-deploy-asc%2Ck8s-verify-asc%2Ck8s-remove-arc%2Caks-removeprofile-api&pivots=defender-for-container-eks
5761
- text: Enable Defender for SQL servers for your AWS SQL databases
58-
url: defender-for-sql-introduction.md
62+
url: defender-for-sql-usage.md
5963
- linkListType: how-to-guide
6064
links:
6165
- text: Secure your AWS management ports with just-in-time access
@@ -99,7 +103,7 @@ landingContent:
99103
- text: Enable Defender for Containers for your GCP GKE containers
100104
url: defender-for-containers-enable.md?tabs=aks-deploy-portal%2Ck8s-deploy-asc%2Ck8s-verify-asc%2Ck8s-remove-arc%2Caks-removeprofile-api&pivots=defender-for-container-gke
101105
- text: Enable Defender for SQL servers for your GCP SQL databases
102-
url: defender-for-sql-introduction.md
106+
url: defender-for-sql-usage.md
103107
- linkListType: how-to-guide
104108
links:
105109
- text: Create custom assessments and standards for GCP workloads
@@ -111,4 +115,4 @@ landingContent:
111115
# - linkListType: reference
112116
# links:
113117
# - text: Security recommendations for GCP resources
114-
# url: recommendations-reference-gcp.md
118+
# url: recommendations-reference-gcp.md

articles/defender-for-iot/organizations/TOC.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -106,6 +106,8 @@
106106
items:
107107
- name: Overview
108108
href: integrate-overview.md
109+
- name: ArcSight
110+
href: integrations/arcsight.md
109111
- name: Integrate ClearPass
110112
href: tutorial-clearpass.md
111113
- name: Integrate CyberArk

articles/defender-for-iot/organizations/integrate-overview.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -16,6 +16,7 @@ The following table lists available integrations for Microsoft Defender for IoT,
1616

1717
|Partner service |Description | Learn more |
1818
|---------|---------|---------|
19+
| **ArcSight** | Forward Defender for IoT alerts to ArcSight. | [Integrate ArcSight with Microsoft Defender for IoT](integrations/arcsight.md) |
1920
|**Aruba ClearPass** | Share Defender for IoT data with ClearPass Security Exchange and update the ClearPass Policy Manager Endpoint Database with Defender for IoT data. | [Integrate ClearPass with Microsoft Defender for IoT](tutorial-clearpass.md) |
2021
|**CyberArk** | Send CyberArk PSM syslog data on remote sessions and verification failures to Defender for IoT for data correlation. | [Integrate CyberArk with Microsoft Defender for IoT](tutorial-cyberark.md) |
2122
|**Forescout** | Automate actions in Forescout based on activity detected by Defender for IoT, and correlate Defender for IoT data with other *Forescout eyeExtended* modules that oversee monitoring, incident management, and device control. | [Integrate Forescout with Microsoft Defender for IoT](tutorial-forescout.md) |
Lines changed: 57 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,57 @@
1+
---
2+
title: Integrate ArcSight with Microsoft Defender for IoT
3+
description: Learn how to send Microsoft Defender for IoT alerts to ArcSight.
4+
ms.topic: how-to
5+
ms.date: 08/02/2022
6+
---
7+
8+
# Integrate ArcSight with Microsoft Defender for IoT
9+
10+
This article describes how to send Microsoft Defender for IoT alerts to ArcSight. Integrating Defender for IoT with ArcSight provides visibility into the security and resiliency of OT networks and a unified approach to IT and OT security.
11+
12+
## Prerequisites
13+
14+
Before you begin, make sure that you have the following prerequisites:
15+
16+
- Access to a Defender for IoT OT sensor as an Admin user.
17+
18+
## Configure the ArcSight receiver type
19+
20+
To configure your ArcSight server settings so that it can receive Defender for IoT alert information:
21+
22+
1. Sign in to your ArcSight server.
23+
1. Configure your receiver type as a **CEF UDP Receiver**.
24+
25+
For more information, see the [ArcSight SmartConnectors Documentation](https://www.microfocus.com/documentation/arcsight/arcsight-smartconnectors/#gsc.tab=0).
26+
27+
## Create a Defender for IoT forwarding rule
28+
29+
This procedure describes how to create a forwarding rule from your OT sensor to send Defender for IoT alerts from that sensor to ArcSight.
30+
31+
For more information, see [Forward alert information](../how-to-forward-alert-information-to-partners.md).
32+
33+
1. Sign in to your OT sensor console and select **Forwarding** on the left.
34+
35+
1. Enter a meaningful name for your rule, and then define your rule details, including:
36+
37+
- The minimal alert level. For example, if you select Minor, you are notified about all minor, major and critical incidents.
38+
- The protocols you want to include in the rule.
39+
- The traffic you want to include in the rule.
40+
41+
1. In the **Actions** area, define the following values:
42+
43+
- **Server**: Select **ArcSight**
44+
- **Host**: The ArcSight server address
45+
- **Port**: The ArcSight server port
46+
- **Timezone**: The timezone of the ArcSight server
47+
48+
1. Select **Save** to save your forwarding rule.
49+
50+
## Next steps
51+
52+
For more information, see:
53+
54+
- [Integrations with partner services](../integrate-overview.md)
55+
- [Forward alert information](../how-to-forward-alert-information-to-partners.md)
56+
- [Manage individual sensors](../how-to-manage-individual-sensors.md)
57+

articles/firewall/firewall-performance.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ services: firewall
55
author: vhorne
66
ms.service: firewall
77
ms.topic: conceptual
8-
ms.date: 07/08/2022
8+
ms.date: 08/03/2022
99
ms.author: victorh
1010
---
1111

@@ -26,7 +26,7 @@ For more information about Azure Firewall, see [What is Azure Firewall?](overvie
2626

2727
## Performance testing
2828

29-
Before deploying Azure Firewall, the performance needs to be tested and evaluated to ensure it meets your expectations. Not only should Azure Firewall handle the current traffic on a network, but it should also be ready for potential traffic growth. It is recommended to evaluate on a test network and not in a production environment. The testing should attempt to replicate the production environment as close as possible. This includes the network topology, and emulating the actual characteristics of the expected traffic through the firewall.
29+
Before you deploy Azure Firewall, the performance needs to be tested and evaluated to ensure it meets your expectations. Not only should Azure Firewall handle the current traffic on a network, but it should also be ready for potential traffic growth. It is recommended to evaluate on a test network and not in a production environment. The testing should attempt to replicate the production environment as close as possible. This includes the network topology, and emulating the actual characteristics of the expected traffic through the firewall.
3030

3131
## Performance data
3232

@@ -52,6 +52,7 @@ Azure Firewall also supports the following throughput for single connections:
5252
|Standard<br>Max bandwidth for single TCP connection |1.3|
5353
|Premium<br>Max bandwidth for single TCP connection |9.5|
5454
|Premium max bandwidth with TLS/IDS|100|
55+
|Premium single TCP connection with IDPS on *Alert and Deny* mode|up to 300 Mbps|
5556

5657
Performance values are calculated with Azure Firewall at full scale. Actual performance may vary depending on your rule complexity and network configuration. These metrics are updated periodically as performance continuously evolves with each release.
5758

articles/mysql/flexible-server/concepts-service-tiers-storage.md

Lines changed: 0 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -106,8 +106,6 @@ While the service attempts to make the server read-only, all new write transacti
106106

107107
To get the server out of read-only mode, you should increase the provisioned storage on the server. This can be done using the Azure portal or Azure CLI. Once increased, the server will be ready to accept write transactions again.
108108

109-
We recommend that you set up an alert to notify you when your server storage is approaching the threshold so you can avoid getting into the read-only state. Refer to the [monitoring article](./concepts-monitoring.md) to learn about metrics available.
110-
111109
We recommend that you <!--turn on storage auto-grow or to--> set up an alert to notify you when your server storage is approaching the threshold so you can avoid getting into the read-only state. For more information, see the documentation on alert documentation [how to set up an alert](how-to-alert-on-metric.md).
112110

113111
### Storage auto-grow

articles/purview/how-to-monitor-scan-runs.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ ms.author: jingwang
66
ms.service: purview
77
ms.subservice: purview-data-map
88
ms.topic: how-to
9-
ms.date: 04/04/2022
9+
ms.date: 08/03/2022
1010
---
1111

1212
# Monitor scan runs in Microsoft Purview
@@ -18,7 +18,7 @@ In Microsoft Purview, you can register and scan various types of data sources, a
1818
1919
## Monitor scan runs
2020

21-
1. Go to your Microsoft Purview account -> open **Microsoft Purview governance portal** -> **Data map** -> **Monitoring**.
21+
1. Go to your Microsoft Purview account -> open **Microsoft Purview governance portal** -> **Data map** -> **Monitoring**. You need to have **Data source admin** role on any collection to access this page. And you will see the scan runs that belong to the collections on which you have data source admin privilege.
2222

2323
1. The high-level KPIs show total scan runs within a period. The time period is defaulted at last 30 days, you can also choose to select last seven days. Based on the time filter selected, you can see the distribution of successful, failed, and canceled scan runs by week or by the day in the graph.
2424

articles/site-recovery/vmware-azure-manage-configuration-server.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ manager: gaggupta
66
ms.service: site-recovery
77
ms.topic: conceptual
88
ms.author: v-pgaddala
9-
ms.date: 05/27/2021
9+
ms.date: 08/03/2022
1010
---
1111

1212
# Manage the configuration server for VMware VM/physical server disaster recovery
@@ -111,7 +111,7 @@ The expiry date appears under **Configuration Server health**. For configuration
111111
### If certificates have already expired
112112

113113
1. Post expiry, certificates **cannot be renewed from Azure portal**. Before proceeding, ensure all components scale-out process servers, master target servers and mobility agents on all protected machines are on latest versions and are in connected state.
114-
2. **Follow this procedure only if certificates have already expired.** Login to configuration server, navigate to C drive > Program Data > Site Recovery > home > svsystems > bin and execute "RenewCerts" executor tool as administrator.
114+
2. **Follow this procedure only if certificates have already expired.** Login to configuration server, navigate to *C:\ProgramData\ASR\home\svsystems\bin* and execute **RenewCerts** executor tool as administrator.
115115
3. A PowerShell execution window pops-up and triggers renewal of certificates. This can take up to 15 minutes. Do not close the window until completion of renewal.
116116

117117
:::image type="content" source="media/vmware-azure-manage-configuration-server/renew-certificates.png" alt-text="RenewCertificates":::

0 commit comments

Comments
 (0)