Bart Danse
My feedback
-
1 vote
Bart Danse shared this idea ·
-
19 votes0 comments · Azure Monitor-Log Analytics » Agent Management, Data Metering and Usage (Portal) · Flag idea as inappropriate… · Admin →
Bart Danse supported this idea ·
-
20 votes
Bart Danse supported this idea ·
-
97 votes
Update Management is a wrapper which uses your machine’s OS update service or package manager – to fetch & install updates.
On Windows Server OS – the Microsoft Update Service can be configured fetch & updates for MS products. And hence UM, then can allow installing MS updates as well. More details here: https://docs.microsoft.com/azure/automation/update-management/configure-wuagent#enable-updates-for-other-microsoft-products
Microsoft Update Service on Windows Server OS doesn’t update 3rd party software say Adobe or Java. Hence update management solution can’t also in-turn do the same. Unless tools like Wsus Package Publisher ( https://github.com/DCourtel/Wsus_Package_Publisher ) is used which can publish third-party applications into your WSUS.
Bart Danse supported this idea ·
-
15 votes2 comments · Azure Monitor-Log Analytics » Log Management and Log Collection Policy · Flag idea as inappropriate… · Admin →
In the future we will work on plans for higher retention policy.
For the ‘export’ functionality, you might want to check the API idea http://feedback.azure.com/forums/267889-azure-operational-insights/suggestions/6519057-programmatically-submit-search-requests-and-receiv but, realistically, after you uploaded terabytes of data over a few months time… even the concept of downloading everything back at that point seems daunting.
Bart Danse supported this idea ·
-
21 votes
Bart Danse supported this idea ·
-
414 votes
Bart Danse supported this idea ·
An error occurred while saving the comment -
18 votes
Bart Danse supported this idea ·
-
39 votes
We’ve done some improvements around grouping, including dynamic Azure queries (tag-based) and dynamic saved searches. We’re also still investigating other higher level groupings.
Bart Danse supported this idea ·
-
6 votes1 comment · Azure Monitor-Log Analytics » Security and Audit Solution · Flag idea as inappropriate… · Admin →
An error occurred while saving the comment Bart Danse commented
found some more.
Retention search for a string instead of int (dword). NullSessionShares is not found at all.
OSName,RuleSetting,ExpectedResult,ActualResult,BaselineRuleId
Windows Server 2016 Datacenter,"LocalMachine\System\CurrentControlSet\Services\LanManServer\Parameters : NullSessionShares",0,"NOT_EXISTS","383ddfeb-b22d-4206-b8b3-67d4e0c6dfe7"
Windows Server 2016 Datacenter,"LocalMachine\Software\Policies\Microsoft\Windows\EventLog\Security : Retention",0,"NOT_EXISTS","185f52cc-add3-4591-91a6-624efa791351"
Windows Server 2016 Datacenter,"LocalMachine\Software\Policies\Microsoft\Windows\EventLog\Setup : Retention",0,"NOT_EXISTS","12990b19-424e-404b-b9b5-80f201ac9192"
Windows Server 2016 Datacenter,"LocalMachine\Software\Policies\Microsoft\Windows\EventLog\System : Retention",0,"NOT_EXISTS","f5e7b762-f33c-43f9-8e66-a9f672806fb4"Bart Danse shared this idea ·
-
14 votes
Bart Danse shared this idea ·
-
7 votes
Thanks for your suggestion! It’s currently in our backlog and needs to be prioritized with other features. So we don’t have an ETA at this point of time. If anyone wants to see this sooner, please don’t hesitate to vote for it.
Bart Danse supported this idea ·
-
6 votes
Thanks for submitting the idea! It’s currently in our backlog and needs to be prioritized with other features. So we don’t have an ETA at this point of time. If anyone wants to see this sooner, please don’t hesitate to vote for it.
Bart Danse supported this idea ·
-
10 votes
Great idea. We have plans to enable more granular control on the baseline rules to support cases like this one, but we there’s no ETA at this point.
Gilad Elyashar
Product ManagerBart Danse supported this idea ·
-
32 votes1 comment · Azure Monitor-Log Analytics » Log Management and Log Collection Policy · Flag idea as inappropriate… · Admin →
Bart Danse supported this idea ·
-
25 votes
Can you clarify if I understood correctly: you would like to pull in and index events from other tools/collectors that are already collecting them? Could you please elaborate on the scenario and what you would like to achieve?
Bart Danse supported this idea ·
Not only subnets also additional adress spaces have the same limitations.