Skip to content

Commit eeaf75a

Browse files
committed
Merge branch 'cust-intents-mixed' of https://github.com/batamig/azure-docs-pr into cust-intents-mixed
2 parents 749074a + 03f1f2b commit eeaf75a

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

42 files changed

+105
-106
lines changed

articles/sentinel/audit-sentinel-data.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,10 @@
11
---
22
title: Audit Microsoft Sentinel queries and activities | Microsoft Docs
33
description: This article describes how to audit queries and activities performed in Microsoft Sentinel.
4-
author: limwainstein
4+
author: batamig
55
ms.topic: how-to
66
ms.date: 01/09/2023
7-
ms.author: lwainstein
7+
ms.author: bagol
88

99

1010
#Customer intent: [AI]As a security operations analyst, I want to audit queries and activities in my SOC environment so that I can ensure compliance and monitor security operations effectively.

articles/sentinel/audit-table-reference.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,14 @@
11
---
22
title: Microsoft Sentinel audit tables reference
33
description: Learn about the fields in the SentinelAudit tables, used for audit monitoring and analysis.
4-
author: limwainstein
5-
ms.author: lwainstein
4+
author: batamig
5+
ms.author: bagol
66
ms.topic: reference
77
ms.date: 01/17/2023
88
ms.service: microsoft-sentinel
99

1010

11-
#Customer intent: [AI]As a security analyst, I want to understand the schema and usage of Microsoft Sentinel audit tables so that I can effectively monitor and audit user activities within my SIEM environment.
11+
#Customer intent: [AI]As a security analyst, I want to understand the schema and usage of Microsoft Sentinel audit tables so that I can effectively monitor user activities within my SIEM environment.
1212

1313
---
1414

articles/sentinel/aws-s3-troubleshoot.md

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,10 @@
11
---
22
title: Troubleshoot AWS S3 connector issues - Microsoft Sentinel
33
description: Troubleshoot AWS S3 connector issues in Microsoft Sentinel.
4-
author: limwainstein
5-
ms.author: lwainstein
4+
author: yelevin
5+
ms.author: yelevin
66
ms.topic: troubleshooting
77
ms.date: 09/08/2022
8-
#Customer intent: As a security operator, I want to quickly identify the cause of the problem occurring with the AWS S3 connector so I can find the steps needed to resolve the problem.
98

109

1110
#Customer intent: [AI]As a cloud security engineer, I want to troubleshoot AWS S3 connector issues so that I can ensure seamless log ingestion into my SIEM system.
@@ -154,4 +153,4 @@ There might be errors in the health logs, or the health feature might not be ena
154153
155154
In this article, you learned how to quickly identify causes and resolve common issues with the AWS S3 connector.
156155
157-
We welcome feedback, suggestions, requests for features, bug reports or improvements and additions. Go to the [Microsoft Sentinel GitHub repository](https://github.com/Azure/Azure-Sentinel) to create an issue or fork and upload a contribution.
156+
We welcome feedback, suggestions, requests for features, bug reports or improvements and additions. Go to the [Microsoft Sentinel GitHub repository](https://github.com/Azure/Azure-Sentinel) to create an issue or fork and upload a contribution.

articles/sentinel/best-practices-data.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,13 @@
11
---
22
title: Best practices for data collection in Microsoft Sentinel
33
description: Learn about best practices to employ when connecting data sources to Microsoft Sentinel.
4-
author: limwainstein
5-
ms.author: lwainstein
4+
author: yelevin
5+
ms.author: yelevin
66
ms.topic: conceptual
77
ms.date: 01/09/2023
88

99

10-
#Customer intent: [AI]As a security operations analyst, I want to implement best practices for data collection using cloud-based SIEM connectors so that I can optimize log ingestion, reduce costs, and enhance security monitoring.
10+
#Customer intent: [AI]As a security operations analyst, I want to implement best practices for Microsoft Sentinel data collection so that I can optimize log ingestion, reduce costs, and enhance security monitoring.
1111

1212
---
1313

articles/sentinel/configure-content.md

Lines changed: 4 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,13 @@
11
---
22
title: Configure Microsoft Sentinel content
33
description: In this step of your deployment, you configure the Microsoft Sentinel security content, like your data connectors, analytics rules, automation rules, and more.
4-
author: limwainstein
4+
author: cwatson-cat
55
ms.topic: how-to
66
ms.date: 07/05/2023
7-
ms.author: lwainstein
8-
#Customer intent: As a SOC analyst, I want to configure the Microsoft Sentinel security content, so I can protect my organization against threats.
7+
ms.author: cwatson
98

109

11-
#Customer intent: [AI]As a security operations analyst, I want to configure security content in my SIEM platform so that I can detect, monitor, and respond to security threats effectively.
10+
#Customer intent: [AI]As a security operations analyst, I want to configure Microsoft Sentinel security content so that I can detect, monitor, and respond to security threats effectively.
1211

1312
---
1413

@@ -32,4 +31,4 @@ In the previous deployment step, you enabled Microsoft Sentinel, health monitori
3231
In this article, you learned how to configure the different types of Microsoft Sentinel security content.
3332

3433
> [!div class="nextstepaction"]
35-
>>[Set up multiple workspaces](use-multiple-workspaces.md)
34+
>>[Set up multiple workspaces](use-multiple-workspaces.md)

articles/sentinel/configure-data-retention-archive.md

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,6 @@ author: cwatson-cat
55
ms.topic: how-to
66
ms.date: 07/21/2024
77
ms.author: cwatson
8-
#Customer intent: As a SOC analyst, I want to set up interactive and long-term data retention settings so I can retain the data that's important to my organization in the long term.
98

109

1110
#Customer intent: [AI]As a security analyst, I want to configure data retention and archiving policies so that I can ensure long-term storage of important data at a reduced cost.

articles/sentinel/connect-azure-virtual-desktop.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,13 @@
11
---
22
title: Connect Azure Virtual Desktop to Microsoft Sentinel | Microsoft Docs
33
description: Learn to connect your Azure Virtual Desktop data to Microsoft Sentinel.
4-
author: limwainstein
4+
author: yelevin
55
ms.topic: how-to
66
ms.date: 01/09/2023
7-
ms.author: lwainstein
7+
ms.author: yelevin
88

99

10-
#Customer intent: [AI]As a security analyst, I want to monitor Azure Virtual Desktop environments using a SIEM solution so that I can enhance remote work capabilities while maintaining security.
10+
#Customer intent: [AI]As a security analyst, I want to monitor Azure Virtual Desktop environments using Microsoft Sentinel so that I can enhance remote work capabilities while maintaining security.
1111

1212
---
1313

articles/sentinel/connect-dns-ama.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,10 @@
11
---
22
title: Stream and filter Windows DNS logs with the AMA connector
33
description: Use the AMA connector to upload and filter data from your Windows DNS server logs. You can then dive into your logs to protect your DNS servers from threats and attacks.
4-
author: limwainstein
4+
author: yelevin
55
ms.topic: how-to
66
ms.date: 01/05/2022
7-
ms.author: lwainstein
7+
ms.author: yelevin
88
#Customer intent: As a security operator, I want to proactively monitor Windows DNS activities so that I can prevent threats and attacks on DNS servers.
99

1010

articles/sentinel/connect-microsoft-purview.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,10 @@
11
---
22
title: Stream data from Microsoft Purview Information Protection to Microsoft Sentinel
33
description: Stream data from Microsoft Purview Information Protection (formerly Microsoft Information Protection) to Microsoft Sentinel so you can analyze and report on data from the Microsoft Purview labeling clients and scanners.
4-
author: limwainstein
4+
author: yelevin
55
ms.topic: how-to
66
ms.date: 05/31/2023
7-
ms.author: lwainstein
7+
ms.author: yelevin
88
#Customer intent: As a security operator, I want to get specific labeling data from Microsoft Purview, so I can track, analyze, report on the data and use it for compliance purposes.
99

1010

articles/sentinel/create-custom-connector.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,10 @@
11
---
22
title: Resources for creating Microsoft Sentinel custom connectors | Microsoft Docs
33
description: Learn about available resources for creating custom connectors for Microsoft Sentinel. Methods include the Log Analytics agent and API, Logstash, Logic Apps, PowerShell, and Azure Functions.
4-
author: limwainstein
4+
author: austinmccollum
55
ms.topic: conceptual
66
ms.date: 01/09/2023
7-
ms.author: lwainstein
7+
ms.author: austinmc
88

99

1010
#Customer intent: [AI]As a security analyst, I want to create custom data connectors for Microsoft Sentinel so that I can ingest and analyze data from unsupported sources to enhance my organization's security monitoring and threat detection capabilities.

0 commit comments

Comments
 (0)