Skip to content

Commit cf14fb5

Browse files
committed
sanity
1 parent 56fc447 commit cf14fb5

File tree

2 files changed

+6
-2
lines changed

2 files changed

+6
-2
lines changed

articles/defender-for-iot/organizations/iot-advanced-threat-monitoring.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -126,7 +126,7 @@ To open an alert in Defender for IoT for further investigation, go to your incid
126126

127127
:::image type="content" source="media/iot-solution/investigate-in-iot.png" alt-text="Screenshot of the Investigate in Microsoft Defender for IoT option.":::
128128

129-
The Defender for IoT alert details page opens for the related alert.
129+
The Defender for IoT alert details page opens for the related alert. For more information, see [Investigate and respond to an OT network alert](respond-ot-alert.md).
130130

131131
## Visualize and monitor Defender for IoT data
132132

articles/defender-for-iot/organizations/respond-ot-alert.md

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,11 @@ For example:
3636

3737
:::image type="content" source="media/respond-ot-alert/change-alert-status.png" alt-text="Screenshot of changing an alert status on the Azure portal.":::
3838

39-
Then, check the alert details page for the following details to aid in your investigation:
39+
> [!IMPORTANT]
40+
> If you're integrating with Microsoft Sentinel, make sure to manage your alert status only from the [incident](/azure/sentinel/investigate-incidents) in Microsoft Sentinel. Alerts statuses are not synchronized from Defender for IoT to Microsoft Sentinel.
41+
42+
43+
After updating the status, check the alert details page for the following details to aid in your investigation:
4044

4145
- **Source and destination device details**. Source and destination devices are listed in **Alert details** tab, and also in the **Entities** area below, as Microsoft Sentinel *entities*, with their own [entity pages](iot-advanced-threat-monitoring.md#investigate-further-with-iot-device-entities). In the **Entities** area, you'll use the links in the **Name** column to open the relevant device details pages for [further investigation](#investigate-related-alerts-on-the-azure-portal).
4246

0 commit comments

Comments
 (0)