Logging and threat detection
LT-1: Enable threat detection capabilities
Features: Microsoft Defender for Service / Product Offering
Description: Service has an offering-specific Microsoft Defender solution to monitor and alert on security issues.
Configuration Guidance: This feature isn't supported to secure this service.
LT-4: Enable logging for security investigation
Feature: Azure Resource Logs
Description: Service produces resource logs that can provide enhanced service-specific metrics and logging. The customer can configure these resource logs and send them to their own data sink like a storage account or log analytics workspace.
Configuration Guidance: Enable resource logs for API Management, resource logs provide rich information about operations and errors that are important for auditing and troubleshooting purposes. Categories of resource logs for API Management include:
- GatewayLogs
- WebSocketConnectionLogs
Comments
Post a Comment