Skip to content

Latest commit

 

History

History
53 lines (42 loc) · 2.43 KB

File metadata and controls

53 lines (42 loc) · 2.43 KB

title: Stream Microsoft Defender for Endpoint event description: Learn how to configure Microsoft Defender for Endpoint to stream Advanced Hunting events to Event Hubs or Azure storage account ms.service: defender-endpoint ms.author: painbar author: paulinbar ms.localizationpriority: medium manager: bagol audience: ITPro ms.collection:

  • m365-security
  • tier3
  • must-keep ms.topic: reference ms.subservice: reference ms.custom: api search.appverid: met150 ms.date: 12/18/2020 appliesto:
    • Microsoft Defender for Endpoint
    • Microsoft Defender for Endpoint Plan 1
    • Microsoft Defender for Business

Raw Data Streaming API

[!INCLUDE Microsoft Defender XDR rebranding]

Tip

For the full data streaming experience available, see Stream Microsoft Defender XDR events. If you're using Microsoft Defender for Business, see Use the streaming API with Microsoft Defender for Business.

Stream Advanced Hunting events to Event Hubs and/or Azure storage account

Microsoft Defender for Endpoint supports streaming events available through Advanced Hunting to an Event Hubs and/or Azure storage account.

[!VIDEO https://learn-video.azurefd.net/vod/player?id=56edfb3f-b612-4e4c-acb9-4bbd141bd535]

In this section

Topic Description
Stream Microsoft Defender for Endpoint events to Azure Event Hubs Learn about enabling the streaming API in your tenant and configure Defender for Endpoint to stream Advanced Hunting to Event Hubs.
Stream Defender for Endpoint events to your Azure storage account Learn about enabling the streaming API in your tenant and configure Defender for Endpoint to stream Advanced Hunting to your Azure storage account.

Related topics