You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
title: SAP agentless data connector prerequisites checker
3
+
ms.date: 03/13/2025
4
+
ms.topic: include
5
+
---
6
+
7
+
<!-- docutune:disable -->
8
+
9
+
**To run the tool**:
10
+
11
+
1. Open the integration package, navigate to the artifacts tab, and select the **Prerequisite checker** iflow > **Configure**.
12
+
1. Set the target RFC destination to the SAP system you want to check.
13
+
1. Deploy the iflow as you would otherwise for your SAP systems. For example, use the following sample PowerShell script, modifying the sample placeholder values for your environment:
Copy file name to clipboardExpand all lines: articles/sentinel/sap/deploy-data-connector-agent-container.md
-14Lines changed: 0 additions & 14 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -48,26 +48,12 @@ Before you connect your SAP system to Microsoft Sentinel:
48
48
49
49
- Make sure that all of the deployment prerequisites are in place. For more information, see [Prerequisites for deploying Microsoft Sentinel solution for SAP applications](prerequisites-for-deploying-sap-continuous-threat-monitoring.md).
50
50
51
-
:::zone pivot="connection-agent"
52
-
53
51
- Make sure that you have the Microsoft Sentinel solution for **SAP applications**[installed in your Microsoft Sentinel workspace](deploy-sap-security-content.md)
54
52
55
53
- Make sure that your SAP system is fully [prepared for the deployment](preparing-sap.md).
56
54
57
55
- If you're deploying the data connector agent to communicate with Microsoft Sentinel over SNC, make sure that you completed [Configure your system to use SNC for secure connections](preparing-sap.md#configure-your-system-to-use-snc-for-secure-connections).
58
56
59
-
:::zone-end
60
-
61
-
:::zone pivot="connection-agentless"
62
-
63
-
- Make sure that you have the Microsoft Sentinel **SAP Agentless** solution [installed in your Microsoft Sentinel workspace](deploy-sap-security-content.md)<!--what is this solution's new name?-->
64
-
65
-
- Make sure that your SAP system is fully [prepared for the deployment](preparing-sap.md).
66
-
67
-
<!--removed- Make sure your DCR is configured as described in [Install the solution from the content hub](deploy-sap-security-content.md#install-the-solution-from-the-content-hub).-->
# Install a Microsoft Sentinel solution for SAP applications
20
20
21
-
The Microsoft Sentinel solutions for SAP applications include an SAP data connector, which collects logs from your SAP systems and sends them to your Microsoft Sentinel workspace, and out-of-the-box security content, which helps you gain insight into your organization's SAP environment and detect and respond to security threats. Installing your solution is a required step before you can configure your data connector agent container.
22
-
23
-
Microsoft Sentinel supports both a containerized data collector agent and an agentless solution. Select the deployment option at the top of the page that matches your environment.
21
+
The Microsoft Sentinel solutions for SAP applications include an SAP data connector, which collects logs from your SAP systems and sends them to your Microsoft Sentinel workspace, and out-of-the-box security content, which helps you gain insight into your organization's SAP environment and detect and respond to security threats. Installing your solution is a required step before you can configure your data connector.
24
22
25
23
:::zone pivot="connection-agent"
26
24
@@ -55,20 +53,13 @@ Make sure that you also review the [prerequisites for deploying Microsoft Sentin
55
53
56
54
## Install the solution from the content hub
57
55
58
-
:::zone pivot="connection-agent"
59
-
Installing the Microsoft Sentinel **SAP applications** solution makes the **Microsoft Sentinel for SAP** data connector available for you in as a Microsoft Sentinel data connector. The solution also deploys security content, such as the **SAP -Audit Controls** workbook and SAP-related analytics rules.
60
-
61
-
1. In the Microsoft Sentinel **Content hub**, search for **SAP applications** to install the solution with the containerized data connector agent on your Log Analytics workspace enabled for Microsoft Sentinel.
56
+
Installing the **Microsoft Sentinel Solution for SAP** makes both the data connector agent and the agentless data connector available to you from the Microsoft Sentinel **Configuration > Data connectors** page. The solution also deploys security content, such as the **SAP -Audit Controls** workbook and SAP-related analytics rules.
62
57
63
-
1. On the **Microsoft Sentinel solution for SAP applications** page, select **Create** to define deployment settings. For example:
58
+
1.In the Microsoft Sentinel **Content hub**, search for **SAP** to install the **SAP applications** solution. On the **Microsoft Sentinel solution for SAP applications** page, select **Create** to define deployment settings. For example:
64
59
65
60
:::image type="content" source="./media/deploy-sap-security-content/sap-solution.png" alt-text="Screenshot that shows the Microsoft Sentinel solution for SAP applications solution pane." lightbox="./media/deploy-sap-security-content/sap-solution.png":::
66
61
67
-
1. On the **Basics** tab, under **Project details**, select the **Subscription** and **Resource group** where you want to install the solution.
68
-
69
-
1. Under **Instance details**, select the Log Analytics workspace enabled for Microsoft Sentinel where you want to install the solution.
70
-
71
-
If you're working with [the Microsoft Sentinel solution for SAP applications in multiple workspaces](cross-workspace.md), select **Some of the data is on a different workspace**, and then define your target workspace, your SOC workspace, and SAP workspace. For example:
62
+
1. On the default **Basics** tab, scroll down to select where to install the solution. If you're working with [the Microsoft Sentinel solution for SAP applications in multiple workspaces](cross-workspace.md), select **Some of the data is on a different workspace**, and then define your target workspace, your SOC workspace, and SAP workspace. For example:
72
63
73
64
For example:
74
65
@@ -81,47 +72,6 @@ Installing the Microsoft Sentinel **SAP applications** solution makes the **Micr
81
72
> [!TIP]
82
73
> If you want the SAP and SOC data to be kept on the same workspace with no additional access controls, do not select **Some of the data is on a different workspace**. In such cases, for more information, see [SAP and SOC data maintained in the same workspace](cross-workspace.md#sap-and-soc-data-maintained-in-the-same-workspace).
83
74
84
-
:::zone-end
85
-
86
-
:::zone pivot="connection-agentless"
87
-
88
-
Installing the Microsoft Sentinel **SAP Agentless** solution makes the agentless **Microsoft Sentinel for SAP** available for you in as a Microsoft Sentinel data connector. The solution also deploys security content, such as the **SAP -Audit Controls** workbook and SAP-related analytics rules, a data collection endpoint, and a data collection rule (DCR).
89
-
90
-
1. In the Microsoft Sentinel **Content hub**, search for **SAP Agentless (Preview)** to install the solution with the agentless data connector on your Log Analytics workspace enabled for Microsoft Sentinel.
91
-
92
-
1. On the **Sentinel Solution for SAP (Agentless) (preview)** page, select **Create** to define deployment settings.
93
-
94
-
1. On the **Basics** tab, under **Project details**, select the **Subscription** and **Resource group** where you want to install the solution.
95
-
96
-
1. Under **Instance details**, select the Log Analytics workspace enabled for Microsoft Sentinel where you want to install the solution.
97
-
98
-
1. Select **Review + create** or **Next** to browse through the solution components. When you're ready, select **Create**
99
-
100
-
The deployment process can take a few minutes. After the deployment is finished, you can view the deployed content in Microsoft Sentinel.
101
-
102
-
1. In the Microsoft Sentinel **Configuration > Data connectors** page, locate and select the **SAP ABAP and S/4 via cloud connector (Preview)** data connector.
103
-
104
-
1. On the **SAP ABAP and S/4 via cloud connector (Preview)** page, in the **Configuration** area, select **Deploy push connector resources** to deploy a data collection rule (DCR) and Microsoft Entra ID app registration to your subscription.
105
-
106
-
When Microsoft Sentinel and Microsoft Entra ID permissions are separated across different people, deployment must be done in two steps. In such cases, the DCR and DCE are deployed successfully in your Microsoft Sentinel resource group, and errors are shown to indicate the missing rights required to create an app registration in Microsoft Entra ID. For more information, see:
107
-
108
-
- [Create Microsoft Entra application](/azure/azure-monitor/logs/tutorial-logs-ingestion-portal#create-microsoft-entra-application)
109
-
- [Assign permissions to the DCR](/azure/azure-monitor/logs/tutorial-logs-ingestion-portal#assign-permissions-to-the-dcr)
110
-
111
-
1. <aname="deployment"></a>Once deployed, note the following values for later use:
112
-
113
-
-**Immutable ID**
114
-
-**Logs Ingestion URL**
115
-
-**Tenant ID**
116
-
-**Entra Application ID**
117
-
-**Entra Application Secret**
118
-
119
-
> [!IMPORTANT]
120
-
> Make sure to complete all SAP deployment steps in [Configure your SAP system for the Microsoft Sentinel solution](preparing-sap.md) before selecting [**Add connection** to create the connector](deploy-data-connector-agent-container.md). The SAP iflow must be fully configured and deployed before you can connect your SAP system to Microsoft Sentinel.
121
-
>
122
-
123
-
:::zone-end
124
-
125
75
For more information, see [Discover and manage Microsoft Sentinel out-of-the-box content](../sentinel-solutions-deploy.md).
Copy file name to clipboardExpand all lines: articles/sentinel/sap/preparing-sap.md
+5-1Lines changed: 5 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -28,7 +28,7 @@ The procedures in this article are typically performed by your **SAP BASIS** tea
28
28
:::zone-end
29
29
30
30
:::zone pivot="connection-agentless"
31
-
This article is part of the second step in deploying the Microsoft Sentinel solution for SAP applications. While steps that are performed in Microsoft Sentinel require that the solution be installed first, other preparations in the SAP environment can happen in parallel.<!--need new images across-->
31
+
This article is part of the second step in deploying the Microsoft Sentinel solution for SAP applications. While steps that are performed in Microsoft Sentinel require that the solution be installed first, other preparations in the SAP environment can happen in parallel.
32
32
33
33
:::image type="content" source="media/deployment-steps/prepare-sap-environment-agentless.png" alt-text="Diagram of the deployment flow for the Microsoft Sentinel solution for SAP applications, with the preparing SAP step highlighted." border="false":::
34
34
@@ -199,6 +199,10 @@ This procedure starts in Microsoft Sentinel and requires that the solution be in
199
199
200
200
If, after you deploy the Azure resources step 1, the values in the steps 2 and 3 aren't automatically populated, close and re-expand step 1 to refresh the values in steps 2 and 3.
201
201
202
+
1. Included in the package is **Prerequisite checker** iflow. We recommend running this iflow before continuing to the next step to ensure that your SAP system meets the system prerequisites.
1. Scroll further down in the **Configuration** area, and expand and follow the instructions in the **Add monitored SAP Systems - Run the steps below for each monitored SAP system:** area for each SAP system you want to monitor.
Copy file name to clipboardExpand all lines: articles/sentinel/sap/sap-deploy-troubleshoot.md
+2-32Lines changed: 2 additions & 32 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -29,39 +29,9 @@ If you don't see a related error to your issue, turn on trace logging for more i
29
29
30
30
## Check for prerequisites
31
31
32
-
The agentless solution package, deployed while [perform the initial connector configuration](preparing-sap.md#perform-initial-connector-configuration), includes a tool to help SAP admins diagnose and fix issues related to the SAP environment configuration.
33
-
34
-
**To run the tool**:
35
-
36
-
1. Select the **Prerequisite checker** iflow > **Configure**, and then set the target RFC destination to the SAP system you want to check.
37
-
1. Deploy the iflow as you would otherwise for your SAP systems. For example, use the following sample PowerShell script, modifying the sample, placeholder values for your environment:
$response = Invoke-WebRequest -Uri "$cpiEndpoint$path$param" -Method Get -Headers $headers
61
-
Write-Host $response.RawContent
62
-
```
32
+
The agentless solution package, deployed while [performing the initial connector configuration](preparing-sap.md#perform-initial-connector-configuration), includes a tool to help SAP admins diagnose and fix issues related to the SAP environment configuration.
63
33
64
-
Make sure that the prerequisites checker runs successfully before connecting to Microsoft Sentinel.
Copy file name to clipboardExpand all lines: articles/sentinel/whats-new.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -4,7 +4,7 @@ description: Learn about the latest new features and announcement in Microsoft S
4
4
author: yelevin
5
5
ms.author: yelevin
6
6
ms.topic: concept-article
7
-
ms.date: 03/03/2025
7
+
ms.date: 03/13/2025
8
8
9
9
#Customer intent: As a security team member, I want to stay updated on the latest features and enhancements in Microsoft Sentinel so that I can effectively manage and optimize my organization's security posture.
10
10
@@ -28,7 +28,7 @@ The Microsoft Sentinel SAP agentless solution is now in public preview and inclu
28
28
29
29
- More data ingested, such as Change Docs logs and User Master data.
30
30
- Optional parameters to customize data collection
31
-
- A new tool to verify system prerequisites and compatibility
31
+
- A new troubleshooting tool to verify system prerequisites and compatibility
0 commit comments