AZ-305 · Question #22
Drag and Drop Question You have an Azure subscription. The subscription contains Azure virtual machines that run Windows Server 2016 and Linux. You need to use Azure Monitor to design an alerting…
The correct answer is Event; Syslog. The 'Event' table in Azure Monitor Logs stores Windows Event Log data, including security events from Windows Server 2016 machines (such as those found in the Windows Security Event Log). The 'Syslog' table stores syslog data from Linux machines, which is the standard logging…
Question
Exhibits
Answer Area
Drag items
Correct arrangement
- Event
- Syslog
Explanation
The 'Event' table in Azure Monitor Logs stores Windows Event Log data, including security events from Windows Server 2016 machines (such as those found in the Windows Security Event Log). The 'Syslog' table stores syslog data from Linux machines, which is the standard logging mechanism for security-related events on Linux systems. Together, these two tables cover the operating system-level security event logging needs for both Windows and Linux virtual machines monitored via the Log Analytics agent.
Topics
Community Discussion
No community discussion yet for this question.

