AZ-500 · Question #137
SIMULATION Use the following login credentials as needed: To enter your username, place your cursor in the Sign in box and click on the username below. To enter your password, place your cursor in…
To collect audit failure data from a VM's security log to an Azure Storage account, you must configure Azure Diagnostics settings on VM1, specifically enabling the Security event log collection with a filter for 'Audit Failure' events, and directing the output to a designated…
Question
Exhibits
Explanation
To collect audit failure data from a VM's security log to an Azure Storage account, you must configure Azure Diagnostics settings on VM1, specifically enabling the Security event log collection with a filter for 'Audit Failure' events, and directing the output to a designated Azure Storage account. This is accomplished through the VM's Diagnostic Settings blade in the Azure portal, where you can specify the storage account destination and configure Windows Event Log collection including Security logs. This approach uses Azure Monitor Diagnostics extension, which is the native Azure mechanism for collecting guest OS-level logs and metrics from virtual machines.
Topics
Community Discussion
No community discussion yet for this question.





