Skip to content

Commit e5049ba

Browse files
authored
Merge pull request #247629 from AbdullahBell/ddos-update-alerts-defender
DDoS Protection: Update: View Azure DDoS Protection alerts in Microsoft Defender for Cloud
2 parents e1da0ce + 1d28a71 commit e5049ba

File tree

3 files changed

+16
-5
lines changed

3 files changed

+16
-5
lines changed

articles/ddos-protection/ddos-view-alerts-defender-for-cloud.md

Lines changed: 16 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -4,24 +4,31 @@ description: Learn how to view DDoS protection alerts in Microsoft Defender for
44
services: ddos-protection
55
author: AbdullahBell
66
ms.service: ddos-protection
7-
ms.topic: how-to
7+
ms.topic: tutorial
88
ms.workload: infrastructure-services
9-
ms.date: 03/29/2023
9+
ms.date: 08/08/2023
1010
ms.author: abell
1111
---
1212

1313
# View Azure DDoS Protection alerts in Microsoft Defender for Cloud
1414

1515
Microsoft Defender for Cloud provides a list of [security alerts](../security-center/security-center-managing-and-responding-alerts.md), with information to help investigate and remediate problems. With this feature, you get a unified view of alerts - including DDoS attack-related alerts - and the actions to take to mitigate the attack.
1616

17+
In this tutorial, you learn how to:
18+
19+
> [!div class="checklist"]
20+
> * View Azure DDoS Protection alerts in Microsoft Defender for Cloud.
21+
1722
There are two specific alerts that you'll see for any DDoS attack detection and mitigation:
1823

1924
- **DDoS Attack detected for Public IP**: This alert is generated when the DDoS protection service detects that one of your public IP addresses is the target of a DDoS attack.
2025
- **DDoS Attack mitigated for Public IP**: This alert is generated when an attack on the public IP address has been mitigated.
2126

2227
To view the alerts, open **Defender for Cloud** in the Azure portal and select **Security alerts**. The following screenshot shows an example of the DDoS attack alerts.
2328

24-
:::image type="content" source="./media/manage-ddos-protection/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/manage-ddos-protection/ddos-alert-asc.png":::
29+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png" alt-text="Screenshot of DDoS Alert in Microsoft Defender for Cloud." lightbox="./media/ddos-view-alerts-defender-for-cloud/ddos-alert-asc.png":::
30+
31+
2532

2633
## Prerequisites
2734

@@ -34,10 +41,14 @@ To view the alerts, open **Defender for Cloud** in the Azure portal and select *
3441
1. In the search box at the top of the portal, enter **Microsoft Defender for Cloud**. Select **Microsoft Defender for Cloud** from the search results.
3542
1. From the side menu, select **Security alerts**. To filter the alerts list, select your subscription, or any of the relevant filters. You can optionally add filters with the **Add filter** option.
3643

37-
:::image type="content" source="./media/manage-ddos-protection/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud.":::
44+
:::image type="content" source="./media/ddos-view-alerts-defender-for-cloud/ddos-protection-security-alerts.png" alt-text="Screenshot of Security alert in Microsoft Defender for Cloud." lightbox="./media/ddos-view-alerts-defender-for-cloud/ddos-protection-security-alerts.png":::
3845

3946
The alerts include general information about the public IP address that’s under attack, geo and threat intelligence information, and remediation steps.
4047

4148
## Next steps
4249

43-
* [Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
50+
In this tutorial you learned how to view DDoS protection alerts in Microsoft Defender for Cloud. To learn more about the recommended steps to take when you receive an alert, see these next steps.
51+
52+
> [!div class="nextstepaction"]
53+
> [Engage with Azure DDoS Rapid Response](ddos-rapid-response.md)
54+
> [components of a DDoS Rapid Response Strategy](ddos-response-strategy.md)

0 commit comments

Comments
 (0)