You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: learn-pr/wwl-sci/configure-siem-security-operations-using-microsoft-sentinel/includes/6-exercise.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -47,13 +47,13 @@ In this task, you continue with the simulation and connect a Microsoft Sentinel
47
47
48
48
1. Select the **Learn more** button on the *Get your SIEM and XDR in one place* message.
49
49
50
-
:::image type="content" source="../media/siem-xdr-learn-more.png" alt-text="Screen capture of SIEM and XDR Learn more button message.":::
50
+
:::image type="content" source="../media/siem-xdr-learn-more.png" alt-text="Screen capture of SIEM and XDR Learn more button message." lightbox="../media/siem-xdr-learn-more.png":::
51
51
52
52
1. Selecting the **Learn more** button opens a new tab in the browser for the *Microsoft Defender XDR* portal.
53
53
54
54
1. On the **Defender Defender** portal **Home** screen, you should see a banner at the top with the message, *Get your SIEM and XDR in one place*. Select the **Connect a workspaces** button.
55
55
56
-
:::image type="content" source="../media/siem-xdr-connect-workspace.png" alt-text="Screen capture of Defender XDR Connect a workspace button.":::
56
+
:::image type="content" source="../media/siem-xdr-connect-workspace.png" alt-text="Screen capture of Defender XDR Connect a workspace button." lightbox="../media/siem-xdr-connect-workspace.png":::
57
57
58
58
1. On the *Choose a workspace* page, select the **woodgrove-loganalyiticsworkspace** Microsoft Sentinel workspace.
59
59
@@ -69,7 +69,7 @@ In this task, you continue with the simulation and connect a Microsoft Sentinel
69
69
70
70
1. Select the **Close** button.
71
71
72
-
:::image type="content" source="../media/successfully-connected-close-button.png" alt-text="Screen capture of the Defender XDR workspace successfully connected page.":::
72
+
:::image type="content" source="../media/successfully-connected-close-button.png" alt-text="Screen capture of the Defender XDR workspace successfully connected page." lightbox="../media/successfully-connected-close-button.png":::
73
73
74
74
1. On the **Defender XDR** portal **Home** screen, you should see a banner at the top with the message, *Your unified SIEM and XDR is ready*. Select the **Start Hunting** button.
75
75
@@ -79,9 +79,9 @@ In this task, you continue with the simulation and connect a Microsoft Sentinel
79
79
80
80
1. In the *Query* pane, you should see a (KQL) query that returns threat intelligence indicators. Select the **Run query** button.
1. Expand the left main menu pane if collapsed and expand the new **Microsoft Sentinel** menu items. You should see *Search*,*Threat management*, *Content management* and *Configuration* selections.
84
+
1. Expand the left main menu pane if collapsed and expand the new **Microsoft Sentinel** menu items. You should see *Search*,*Threat management*, *Content management*, and *Configuration* selections.
85
85
86
86
> [!NOTE]
87
87
> Be aware that there are capability differences between the Azure Microsoft Sentinel portal and Sentinel in the Microsoft Defender XDR portal **[Portal capability differences](/azure/sentinel/microsoft-sentinel-defender-portal#capability-differences-between-portals)**.
0 commit comments