Related questions
Question 433 - AZ-500 discussion
You have an Azure subscription that contains a SQL Server on Azure Virtual Machines instance named SQt1 and a Microsoft Sentinel workspace named Sentinel1.
You need to monitor security incidents on SQL1 by using Sentinel1.
What should you do first?
A.
On SQL1, enable SQL1 Server audit.
B.
On SQL1. install the Connected Machine agent for Azure Arc-enabled servers.
C.
From the Azure portal, create a Log Analytics workspace.
D.
From Sentinel1, enable VM insights.
Your answer:
0 comments
Sorted by
Leave a comment first