This commit is contained in:
Joey Caparas
2018-11-29 15:47:28 -08:00
parent aaf0d149e1
commit 1c8a4a6e02
2 changed files with 3 additions and 3 deletions

View File

@ -23,7 +23,7 @@ Learn how you can use Windows Defender ATP to expand the coverage of Windows Inf
## Prerequisites ## Prerequisites
- Endpoints need to be on Windows 10, version 1809 or later - Endpoints need to be on Windows 10, version 1809 or later
- You'll need the appropriate license to leverage the Windows Defender ATP and Azure Information Protection integration. - You'll need the appropriate license to leverage the Windows Defender ATP and Azure Information Protection integration
- Your tenant needs to be onboarded to Azure Information Protection analytics, for more information see, [Configure a Log Analytics workspace for the reports](https://docs.microsoft.comazure/information-protection/reports-aip#configure-a-log-analytics-workspace-for-the-reports) - Your tenant needs to be onboarded to Azure Information Protection analytics, for more information see, [Configure a Log Analytics workspace for the reports](https://docs.microsoft.comazure/information-protection/reports-aip#configure-a-log-analytics-workspace-for-the-reports)

View File

@ -55,11 +55,11 @@ Clicking the device risk level will redirect you to the device page in Windows D
>Windows Defender ATP does not currently report the Information Types. >Windows Defender ATP does not currently report the Information Types.
### Log Analytics ### Log Analytics
Data discovery based on Windows Defender ATP is also available in Azure Information Protection Log Analytics, where you can perform complicated queries over the raw data. Data discovery based on Windows Defender ATP is also available in [Azure Log Analytics](https://docs.microsoft.com/azure/log-analytics/log-analytics-overview), where you can perform complex queries over the raw data.
For more information on Azure Information Protection analytics, see [Central reporting for Azure Information Protection](https://docs.microsoft.com/azure/information-protection/reports-aip). For more information on Azure Information Protection analytics, see [Central reporting for Azure Information Protection](https://docs.microsoft.com/azure/information-protection/reports-aip).
Open Azure Information Protection Log Analytics in Azure Portal and open a query builder (standard or classic). Open Azure Log Analytics in Azure Portal and open a query builder (standard or classic).
To view Windows Defender ATP data, perform a query that contains: To view Windows Defender ATP data, perform a query that contains: