Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

Version 1 Next »

About The Device

Azure SQL Database is a relational database and fully managed platform as a service (PaaS). Azure SQL Database can create a highly available and high-performance data storage layer for the applications and solutions in Azure.

Device Information

 Entity

Particulars

Vendor Name

Microsoft

Product Name

Azure SQL 

Type of Device

Cloud

Collection Method

Log Type

 Ingestion label

Preferred Logging Protocol

Log Collection Method

Data Source

 Azure SQL

 AZURE_SQL

JSON

CyberHub

Device Configuration

 Prerequisites:

  1. Azure subscription that you can sign in to.

  2. Azure Storage account.

Reference URLs:

How to create/configure storage account?
Create a storage account - Azure Storage

Configurations Steps:

  1. Log In to Azure Portal i.e https://portal.azure.com/

  2. Navigate to Auditing under the Security heading in your SQL database or SQL server pane.

Screenshot 2022-10-20 at 7.12.04 PM.png
  1. If you prefer to set up a server auditing policy, you can select the View server settings link on the database auditing page. You can then view or modify the server auditing settings. Server auditing policies apply to all existing and newly created databases on this server.

image-20240214-085430.png
  1. If you prefer to enable auditing on the database level, switch Auditing to ON. If server auditing is enabled, the database-configured audit exists side-by-side with the server audit.

  2. You have multiple options for configuring where audit logs are stored. You can write logs to an Azure storage account, or to a Log Analytics workspace for consumption by Azure Monitor logs, and to event hub for consumption using event hub.

image-20240214-085800.png
  1. To configure writing audit logs to an event hub, select Event Hub. Select the event hub where logs will be written and then click Save. Be sure that the event hub is in the same region as your database and server.

image-20240219-090049.png
  1. Use below link to get credentials for Azure Event HUB.

    Accenture MDR Quick Start Guide to Get Credentials for Azure Storage and Azure Event HUB

Integration Parameters

Parameters required from customer for Integration.

Property

Description

Logging Source

Select EventHub

eventHubConnectionString

Event hub connection string

consumerGroupName

Optional and used if consumer Group is other than default

Account Key

Access Key to access storage account

Blob Container

Storage blob Container name

Storage Account Name

Azure storage account name

Subscription

Set Eventhub name

  • No labels