Microsoft Sentinel data source type specifications
When you configure Microsoft Sentinel, understanding the specifications for the Microsoft Sentinel data source type can help ensure a successful integration. For example, knowing what the supported version of Microsoft Sentinel is before you begin can help reduce frustration during the configuration process.
The following table describes the specifications for the Microsoft Sentinel data source type.
Specification | Value |
---|---|
Manufacturer | Microsoft |
Data source type | Microsoft Sentinel |
Connector type |
Universal Cloud REST API |
Event format | JSON |
Recorded event types |
security alerts |
Automatically discovered? | No |
Includes identity? | No |
Includes custom properties? | No |
More information | Microsoft Sentinel documentation (https://docs.microsoft.com/en-us/azure/sentinel/overview) |