You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/notifications.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -30,7 +30,7 @@ This section describes how to configure email notifications for Defender for Ide
30
30
Whenever Defender for Identity detects a health issue, configured recipients receive an email notification with the details, with a link to Microsoft Defender XDR for more details.
31
31
32
32
> [!NOTE]
33
-
> To receive email notifications about Incidents, please use the '[Email Notifications](https://security.microsoft.com/securitysettings/defender/email_notifications)' page under Defender XDR Settings for new and existing notifications rules. [Learn more](https://aka.ms/IncidentsNotificationsDefenderXdr)
33
+
> To receive email notifications about Incidents, please use the [Email Notifications](https://security.microsoft.com/securitysettings/defender/email_notifications) page under Defender XDR Settings for new and existing notifications rules. [Learn more](https://aka.ms/IncidentsNotificationsDefenderXdr).
34
34
35
35
## Configure Syslog notifications
36
36
@@ -42,13 +42,13 @@ Events aren't sent from the Defender for Identity service to your Syslog server
42
42
43
43
1. In [Microsoft Defender XDR](https://security.microsoft.com), select **Settings** > **Identities**.
44
44
45
-
1. Under **Notifications**, select **Syslog notifications** and then toggle on the **Syslog service** option.
45
+
1. Under **Notifications**, select **Syslog notifications**, and then toggle on the **Syslog service** option.
46
46
47
47
1. Select **Configure service** to open the **Syslog service** pane.
48
48
49
49
1. Enter the following details:
50
50
51
-
-**Sensor**: Select the sensor you want to send notifications to the Syslog server
51
+
-**Sensor**: Select the sensor you want to send notifications to the Syslog server.
52
52
-**Service endpoint** and **Port**: Enter the IP address or fully qualified domain name (FQDN) for the Syslog server, and then enter the port number. You can configure only one Syslog endpoint.
53
53
-**Transport**: Select the **Transport** protocol (TCP or UDP).
54
54
-**Format**: Select the format (RFC 3164 or RFC 5424).
0 commit comments