Skip to content

Commit a688c4a

Browse files
committed
updated how-to into tutorial and moved screenshots into new folder.
1 parent e050b8d commit a688c4a

File tree

3 files changed

+17
-6
lines changed

3 files changed

+17
-6
lines changed

articles/ddos-protection/ddos-view-alerts-defender-for-cloud.md

Lines changed: 17 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -4,40 +4,51 @@ description: Learn how to view DDoS protection alerts in Microsoft Defender for
44
services: ddos-protection
55
author: AbdullahBell
66
ms.service: ddos-protection
7-
ms.topic: how-to
7+
ms.topic: tutorial
88
ms.workload: infrastructure-services
9-
ms.date: 03/29/2023
9+
ms.date: 08/08/2023
1010
ms.author: abell
1111
---
1212

1313
# View Azure DDoS Protection alerts in Microsoft Defender for Cloud
1414

1515
Microsoft Defender for Cloud provides a list of [security alerts](../security-center/security-center-managing-and-responding-alerts.md), with information to help investigate and remediate problems. With this feature, you get a unified view of alerts - including DDoS attack-related alerts - and the actions to take to mitigate the attack.
1616

17+
In this tutorial, you learn how to:
18+
19+
> [!div class="checklist"]
20+
> * View Azure DDoS Protection alerts in Microsoft Defender for Cloud.
21+
1722
There are two specific alerts that you'll see for any DDoS attack detection and mitigation:
1823

1924
- **DDoS Attack detected for Public IP**: This alert is generated when the DDoS protection service detects that one of your public IP addresses is the target of a DDoS attack.
2025
- **DDoS Attack mitigated for Public IP**: This alert is generated when an attack on the public IP address has been mitigated.
2126

2227
To view the alerts, open **Defender for Cloud** in the Azure portal and select **Security alerts**. The following screenshot shows an example of the DDoS attack alerts.
2328

24-
:::image type="content" source="./media/manage-ddos-protection/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/manage-ddos-protection/ddos-alert-asc.png":::
29+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png":::
30+
31+
2532

2633
## Prerequisites
2734

2835
- An Azure account with an active subscription. [Create an account for free](https://azure.microsoft.com/free/?WT.mc_id=A261C142F).
29-
- [DDoS Network Protection](manage-ddos-protection.md) must be enabled on a virtual network or [DDoS IP Protection](manage-ddos-protection-powershell-ip.md) must be enabled on a public IP address.
36+
- [DDoS Network Protection](ddos-view-alerts-defender-for-cloud.md) must be enabled on a virtual network or [DDoS IP Protection](ddos-view-alerts-defender-for-cloud-powershell-ip.md) must be enabled on a public IP address.
3037

3138
## View alerts in Microsoft Defender for Cloud
3239

3340
1. Sign in to the [Azure portal](https://portal.azure.com/).
3441
1. In the search box at the top of the portal, enter **Microsoft Defender for Cloud**. Select **Microsoft Defender for Cloud** from the search results.
3542
1. From the side menu, select **Security alerts**. To filter the alerts list, select your subscription, or any of the relevant filters. You can optionally add filters with the **Add filter** option.
3643

37-
:::image type="content" source="./media/manage-ddos-protection/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud.":::
44+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud.":::
3845

3946
The alerts include general information about the public IP address that’s under attack, geo and threat intelligence information, and remediation steps.
4047

4148
## Next steps
4249

43-
* [Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
50+
In this tutorial you learned how to view DDoS protection alerts in Microsoft Defender for Cloud. To learn more about the recommended steps to take when you receive an alert, see these next steps.
51+
52+
> [!div class="nextstepaction"]
53+
> [Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
54+
> [components of a DDoS Rapid Response Strategy](ddos-response-strategy.md)

0 commit comments

Comments
 (0)