You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/ddos-protection/ddos-view-alerts-defender-for-cloud.md
+16-5Lines changed: 16 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -4,24 +4,31 @@ description: Learn how to view DDoS protection alerts in Microsoft Defender for
4
4
services: ddos-protection
5
5
author: AbdullahBell
6
6
ms.service: ddos-protection
7
-
ms.topic: how-to
7
+
ms.topic: tutorial
8
8
ms.workload: infrastructure-services
9
-
ms.date: 03/29/2023
9
+
ms.date: 08/08/2023
10
10
ms.author: abell
11
11
---
12
12
13
13
# View Azure DDoS Protection alerts in Microsoft Defender for Cloud
14
14
15
15
Microsoft Defender for Cloud provides a list of [security alerts](../security-center/security-center-managing-and-responding-alerts.md), with information to help investigate and remediate problems. With this feature, you get a unified view of alerts - including DDoS attack-related alerts - and the actions to take to mitigate the attack.
16
16
17
+
In this tutorial, you learn how to:
18
+
19
+
> [!div class="checklist"]
20
+
> * View Azure DDoS Protection alerts in Microsoft Defender for Cloud.
21
+
17
22
There are two specific alerts that you'll see for any DDoS attack detection and mitigation:
18
23
19
24
-**DDoS Attack detected for Public IP**: This alert is generated when the DDoS protection service detects that one of your public IP addresses is the target of a DDoS attack.
20
25
-**DDoS Attack mitigated for Public IP**: This alert is generated when an attack on the public IP address has been mitigated.
21
26
22
27
To view the alerts, open **Defender for Cloud** in the Azure portal and select **Security alerts**. The following screenshot shows an example of the DDoS attack alerts.
23
28
24
-
:::image type="content" source="./media/manage-ddos-protection/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/manage-ddos-protection/ddos-alert-asc.png":::
29
+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png":::
30
+
31
+
25
32
26
33
## Prerequisites
27
34
@@ -34,10 +41,14 @@ To view the alerts, open **Defender for Cloud** in the Azure portal and select *
34
41
1. In the search box at the top of the portal, enter **Microsoft Defender for Cloud**. Select **Microsoft Defender for Cloud** from the search results.
35
42
1. From the side menu, select **Security alerts**. To filter the alerts list, select your subscription, or any of the relevant filters. You can optionally add filters with the **Add filter** option.
36
43
37
-
:::image type="content" source="./media/manage-ddos-protection/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud.":::
44
+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud." lightbox="./media/ddos-view-alerts-defender-for-cloud/ddos-protection-security-alerts.png":::
38
45
39
46
The alerts include general information about the public IP address that’s under attack, geo and threat intelligence information, and remediation steps.
40
47
41
48
## Next steps
42
49
43
-
*[Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
50
+
In this tutorial you learned how to view DDoS protection alerts in Microsoft Defender for Cloud. To learn more about the recommended steps to take when you receive an alert, see these next steps.
51
+
52
+
> [!div class="nextstepaction"]
53
+
> [Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
54
+
> [components of a DDoS Rapid Response Strategy](ddos-response-strategy.md)
0 commit comments