Skip to content

Commit 5a9cfe1

Browse files
authored
Merge pull request #800 from cwatson-cat/patch-1
Update microsoft-sentinel-onboard.md
2 parents 2f551bb + 83b0fcd commit 5a9cfe1

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

defender-xdr/microsoft-sentinel-onboard.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ search.appverid:
2222
appliesto:
2323
- Microsoft Defender XDR
2424
- Microsoft Sentinel in the Microsoft Defender portal
25-
ms.date: 05/29/2024
25+
ms.date: 06/25/2024
2626
---
2727

2828
# Connect Microsoft Sentinel to Microsoft Defender XDR
@@ -38,14 +38,15 @@ Before you begin, review the feature documentation to understand the product cha
3838

3939
- [Microsoft Sentinel in the Microsoft Defender portal](/azure/sentinel/microsoft-sentinel-defender-portal)
4040
- [Advanced hunting in the Microsoft Defender portal](advanced-hunting-microsoft-defender.md)
41+
- [Alerts, incidents, and correlation in Microsoft Defender XDR](alerts-incidents-correlation.md)
4142
- [Automation with the unified security operations platform](/azure/sentinel/automation#automation-with-the-unified-security-operations-platform)
4243

4344
The Microsoft Defender portal supports a single Microsoft Entra tenant and the connection to one workspace at a time. In the context of this article, a workspace is a Log Analytics workspace with Microsoft Sentinel enabled.
4445

4546
To onboard and use Microsoft Sentinel in the Microsoft Defender portal, you must have the following resources and access:
4647

4748
- A Log Analytics workspace that has Microsoft Sentinel enabled
48-
- The data connector for Microsoft Defender XDR (formerly named Microsoft 365 Defender) enabled in Microsoft Sentinel for incidents and alerts
49+
- The data connector for Microsoft Defender XDR (formerly named Microsoft 365 Defender) enabled in Microsoft Sentinel for incidents and alerts. For more information, see [Connect data from Microsoft Defender XDR to Microsoft Sentinel](/azure/sentinel/connect-microsoft-365-defender).
4950
- Access to Microsoft Defender XDR in the Defender portal
5051
- Microsoft Defender XDR onboarded to the Microsoft Entra tenant
5152
- An Azure account with the appropriate roles to onboard, use, and create support requests for Microsoft Sentinel in the Defender portal. The following table highlights some of the key roles needed.

0 commit comments

Comments
 (0)