Can Azure Sentinel aggregates data from devices running on-premises?
Yes, check out the microsoft documentation: https://docs.microsoft.com/en-us/azure/sentinel/connect-data-sources
Default connectors can already ingest data from Windows Event logs and firewalls
External API's for Okta, Barracuda WAF, etc are there as well
Syslog data collected by an agent
Most/all of this can be done with the Log Analytics Agent
1.4m articles
1.4m replys
5 comments
57.0k users