Skip to content

Include Attack Paths in DINE Policy: Deploy export to Event Hub for Microsoft Defender for Cloud data #1517

@s4parke

Description

@s4parke

There is a new Data Type of Defender for Cloud export data called "Security Attack Paths" which is not included in the allowedValues for the exportedDataTypes Parameter of this DINE policy.

The Continuous export settings deployed via Policy to a Subscription do not and cannot include this new type because it is not one of the allowedValues or defaultValues in the Policy parameters.

Please add the "Security Attack Paths" data type to the policy so Defender for Cloud data exported to a Log Analytics Workspace (or EH) using the Policy includes these findings.

/policyDefinitions/Security Center/ASC_ExportToLogAnalyticsWorkspace_DINE.json

Image Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions