Azure / Azure-Sentinel

Cloud-native SIEM for intelligent security analytics for your entire enterprise.
https://azure.microsoft.com/en-us/services/azure-sentinel/
MIT License
4.6k stars 3.01k forks source link

The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time #9918

Closed kiranIngram08 closed 8 months ago

kiranIngram08 commented 9 months ago

The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time:

Willi
v-muuppugund commented 9 months ago

Hi @kiranIngram08 ,Could you please share more details about the solution and the issue with detailed screen shots with replication steps

kiranIngram08 commented 9 months ago

Hello Murli,

We are having issue related to Azure sentinel , Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time. PFA for the same.

@.***

Let me know if you need screen sharing session to resolve it earliest.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Murali Krishna Dev Uppugunduri @.> Sent: Friday, February 9, 2024 6:34 AM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJzIB1DTs$ ,Could you please share more details about the solution and the issue with detailed screen shots with replication steps

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1935171710__;Iw!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJ6qdZI_1$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBWMLMSGSAM5MFQ3HYTYSVYYZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZVGE3TCNZRGA__;!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJwrly3LF$. You are receiving this because you were mentioned.Message ID: @.**@.>>


This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses.

[Ingram_2818e5de]

kiranIngram08 commented 9 months ago

Hello ,

Could you please share an update on this.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Kale, Kiran Sent: Friday, February 9, 2024 9:56 AM To: Azure/Azure-Sentinel @.>; Azure/Azure-Sentinel @.> Cc: Mention @.***> Subject: RE: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hello Murli,

We are having issue related to Azure sentinel , Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time. PFA for the same.

@.***

Let me know if you need screen sharing session to resolve it earliest.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Murali Krishna Dev Uppugunduri @.**@.>> Sent: Friday, February 9, 2024 6:34 AM To: Azure/Azure-Sentinel @.**@.>> Cc: Kale, Kiran @.**@.>>; Mention @.**@.>> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJzIB1DTs$ ,Could you please share more details about the solution and the issue with detailed screen shots with replication steps

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1935171710__;Iw!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJ6qdZI_1$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBWMLMSGSAM5MFQ3HYTYSVYYZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZVGE3TCNZRGA__;!!KDf9ebxpXGLC!A5GSQf4-ZFCdWkj2hS5sgDDU9Z7s-4_zu58vcbNIOHh17bhksXP6aHgy440mfkHcots-u1uIUxKsEUsR6JZaJwrly3LF$. You are receiving this because you were mentioned.Message ID: @.**@.>>


This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses.

[Ingram_2818e5de]

v-muuppugund commented 9 months ago

Hi @kiranIngram08 ,Could you please share couple of time slots to this email i.e. v-muuppugund@microsoft.com for teams meeting session on this issue.

kiranIngram08 commented 9 months ago

Hello ,

We are available now, please schedule call at earliest.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Murali Krishna Dev Uppugunduri @.> Sent: Sunday, February 11, 2024 1:33 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT5iwQOR2$ ,Could you please share couple of time slots to this email i.e. @.**@.> for teams meeting session on this issue.

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1937464626__;Iw!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT7GZW1uw$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBRK2KCHBPAA3TNPKADYTB3KZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZXGQ3DINRSGY__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjTzw1DnbK$. You are receiving this because you were mentioned.Message ID: @.**@.>>


This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses.

[Ingram_2818e5de]

v-muuppugund commented 9 months ago

Hello , We are available now, please schedule call at earliest. Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @. From: Murali Krishna Dev Uppugunduri @.> Sent: Sunday, February 11, 2024 1:33 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918) Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT5iwQOR2$ ,Could you please share couple of time slots to this email i.e. @*.**@*.> for teams meeting session on this issue. — Reply to this email directly, view it on GitHub<https://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-1937464626__;Iw!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT7GZW1uw$>, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBRK2KCHBPAA3TNPKADYTB3KZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZXGQ3DINRSGY__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjTzw1DnbK$. You are receiving this because you were mentioned.Message ID: **@.**@.>> ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08 ,I don't have email id to schedule call ,Could you please share the email id and time slots to i.e. v-muuppugund@microsoft.com for teams meeting session on this issue.

kiranIngram08 commented 9 months ago

Hello Murali ,

Mail is something not in a understandable format , PFA for the same.

@.***

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Murali Krishna Dev Uppugunduri @.> Sent: Monday, February 12, 2024 11:15 AM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hello , We are available now, please schedule call at earliest. Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.@.> @.** From: Murali Krishna Dev Uppugunduri @.> Sent: Sunday, February 11, 2024 1:33 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918https://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5Ua8HQ5x1$) Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT5iwQOR2$ ,Could you please share couple of time slots to this email i.e. @.@.> for teams meeting session on this issue. — Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-1937464626__;Iw!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT7GZW1uw$, or unsubscribehttps://urldefense.com/v3/https:/github.com/notifications/unsubscribe-auth/BGALZBRK2KCHBPAA3TNPKADYTB3KZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZXGQ3DINRSGY;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjTzw1DnbK$. You are receiving this because you were mentioned.Message ID: @.@.>> … ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$ ,I don't have email id to schedule call ,Could you please share the email id and time slots to i.e. @.**@.> for teams meeting session on this issue.

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1938093160__;Iw!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UYked4Cm$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBT6VKDLVRTYKPJMCH3YTGT5PAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZYGA4TGMJWGA__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UVOj2__M$. You are receiving this because you were mentioned.Message ID: @.**@.>>

kiranIngram08 commented 9 months ago

Hello ,

Could you please schedule a call and sent invite to below id.

@Ghorui, @.> and @Kale, @.> will be available to join the call. Let me know if you need anything from our end.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @. From: Murali Krishna Dev Uppugunduri @.> Sent: Monday, February 12, 2024 11:15 AM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.***> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hello , We are available now, please schedule call at earliest. Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.@.> @.** From: Murali Krishna Dev Uppugunduri @.> Sent: Sunday, February 11, 2024 1:33 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918https://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5Ua8HQ5x1$) Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT5iwQOR2$ ,Could you please share couple of time slots to this email i.e. @.@.> for teams meeting session on this issue. — Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-1937464626__;Iw!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT7GZW1uw$, or unsubscribehttps://urldefense.com/v3/https:/github.com/notifications/unsubscribe-auth/BGALZBRK2KCHBPAA3TNPKADYTB3KZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZXGQ3DINRSGY;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjTzw1DnbK$. You are receiving this because you were mentioned.Message ID: @.@.>> … ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$ ,I don't have email id to schedule call ,Could you please share the email id and time slots to i.e. @.**@.> for teams meeting session on this issue.

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1938093160__;Iw!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UYked4Cm$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBT6VKDLVRTYKPJMCH3YTGT5PAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZYGA4TGMJWGA__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UVOj2__M$. You are receiving this because you were mentioned.Message ID: @.**@.>>

kiranIngram08 commented 9 months ago

Kale, Kiran would like to recall the message, "[EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)".


This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses.

[Ingram_2818e5de]

kiranIngram08 commented 9 months ago

Hello ,

Could you please schedule a call and sent invite to below id.

@Ghorui, @.> and @Kale, @.> will be available to join the call from 10 Am IST to 7 Pm IST. Let me know if you need anything from our end.

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @. From: Murali Krishna Dev Uppugunduri @.> Sent: Monday, February 12, 2024 11:15 AM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.***> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hello , We are available now, please schedule call at earliest. Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.@.> @.** From: Murali Krishna Dev Uppugunduri @.> Sent: Sunday, February 11, 2024 1:33 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918https://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5Ua8HQ5x1$) Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT5iwQOR2$ ,Could you please share couple of time slots to this email i.e. @.@.> for teams meeting session on this issue. — Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-1937464626__;Iw!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjT7GZW1uw$, or unsubscribehttps://urldefense.com/v3/https:/github.com/notifications/unsubscribe-auth/BGALZBRK2KCHBPAA3TNPKADYTB3KZAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZXGQ3DINRSGY;!!KDf9ebxpXGLC!Gx4K6G0LvsrB46zvBaGtCxOtolmv3vli6-Hcv6hC_DwpOtKR66QOAYJKJTg3snZmkp0R7npo0SivZuDLyWqjTzw1DnbK$. You are receiving this because you were mentioned.Message ID: @.@.>> … ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UarqNCn8$ ,I don't have email id to schedule call ,Could you please share the email id and time slots to i.e. @.**@.> for teams meeting session on this issue.

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-1938093160__;Iw!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UYked4Cm$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBT6VKDLVRTYKPJMCH3YTGT5PAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTSMZYGA4TGMJWGA__;!!KDf9ebxpXGLC!AXAV76KbnepHuCGQt81bo9pV4eZVPkijZkZX54w6xSjiFgzJJhnY-9DFy6EyDXh9f6uUfw7E3gb9NW0C_iZ5UVOj2__M$. You are receiving this because you were mentioned.Message ID: @.**@.>>

ghorui commented 9 months ago

Not sure why I am being tagged in this issue. FYI kiranIngram08

v-muuppugund commented 9 months ago

Hi @kiranIngram08 ,as discussed yesterday over call, the following are done

  1. Isconnected kql query checked and shared the details
  2. lastdatareceived query checked
  3. Checked n/w for issues as there are so many calls,so asked to shared har logs
  4. Modified the isconnected query on call and shared tried to check in data connector ui as unable to access it
  5. Will be working on another option for modified is connected query testing in connector ui and also verify the HAR logs and get back to you with an update.
v-muuppugund commented 8 months ago

Hi @kiranIngram08 ,Scheduled call on monday for further troubleshooting on this issue,please join the meeting

v-muuppugund commented 8 months ago

Hi @kiranIngram08 ,as discussed over teams yesterday, Option 3 worked after our call and working on testing with live data will confirm you today.

v-muuppugund commented 8 months ago

Hi @kiranIngram08 ,As discussed over teams,fixed the issue and working on raising the PR, please find below screen shot for reference image

v-muuppugund commented 8 months ago

Hi @kiranIngram08 ,As discussed over email,raised for the issue, please find below link for reference. https://github.com/Azure/Azure-Sentinel/pull/10128

v-muuppugund commented 8 months ago

Hi @kiranIngram08 ,PR has merged ,so closing this issue and it will be raised in PC also and soon will see live, there is no pending work,so closing the issue

kiranIngram08 commented 7 months ago

Hi Murali,

Please share ETA when we can see updated version in Azure Sentinel.

Also let us know do we need to take any action i.e. upgrading connector from our end?

Thanks and regards,

Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @.***

From: Murali Krishna Dev Uppugunduri @.> Sent: Friday, March 15, 2024 11:17 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918)

Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZnMCbpcC$ ,PR has merged ,so closing this issue and it will be raised in PC also and soon will see live, there is no pending work,so closing the issue

— Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918*issuecomment-2000152196__;Iw!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZqGM7iNT$, or unsubscribehttps://urldefense.com/v3/__https:/github.com/notifications/unsubscribe-auth/BGALZBROOZ6GPGZ45AYPCRTYYMX2HAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMBQGE2TEMJZGY__;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZgvgFpd9$. You are receiving this because you were mentioned.Message ID: @.**@.>>


This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses.

[Ingram_2818e5de]

v-muuppugund commented 7 months ago

Hi Murali, Please share ETA when we can see updated version in Azure Sentinel. Also let us know do we need to take any action i.e. upgrading connector from our end? Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.> @. From: Murali Krishna Dev Uppugunduri @.> Sent: Friday, March 15, 2024 11:17 PM To: Azure/Azure-Sentinel @.> Cc: Kale, Kiran @.>; Mention @.> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918) Hi @kiranIngram08https://urldefense.com/v3/__https:/github.com/kiranIngram08__;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZnMCbpcC$ ,PR has merged ,so closing this issue and it will be raised in PC also and soon will see live, there is no pending work,so closing the issue — Reply to this email directly, view it on GitHub<https://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-2000152196;Iw!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZqGM7iNT$>, or unsubscribe<https://urldefense.com/v3/https:/github.com/notifications/unsubscribe-auth/BGALZBROOZ6GPGZ45AYPCRTYYMX2HAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMBQGE2TEMJZGY__;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZgvgFpd9$>. You are receiving this because you were mentioned.Message ID: **@.**@.>> ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08 ,Will share an update by eod,Thanks

v-muuppugund commented 7 months ago

Hi Murali, Please share ETA when we can see updated version in Azure Sentinel. Also let us know do we need to take any action i.e. upgrading connector from our end? Thanks and regards, Kiran Suresh Kale Associate Cloud Engineer | Business Systems Mobile : (+91) 7057825458 E: @.**@.**> @. From: Murali Krishna Dev Uppugunduri @.**> Sent: Friday, March 15, 2024 11:17 PM To: Azure/Azure-Sentinel @.**> Cc: Kale, Kiran @.**>; Mention @.**> Subject: [EXTERNAL]Re: [Azure/Azure-Sentinel] The Data Connector “Exchange Security Insights Online Collector (using Azure Functions)” is ingesting data correctly, but does not show Last Log Received time (Issue #9918) Hi @kiranIngram08https://urldefense.com/v3/https:/github.com/kiranIngram08;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZnMCbpcC$ ,PR has merged ,so closing this issue and it will be raised in PC also and soon will see live, there is no pending work,so closing the issue — Reply to this email directly, view it on GitHubhttps://urldefense.com/v3/__https:/github.com/Azure/Azure-Sentinel/issues/9918issuecomment-2000152196;Iw!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPn_F0ryhUrPzIB-PBxeWcZqGM7iNT$, or unsubscribehttps://urldefense.com/v3/https:/github.com/notifications/unsubscribe-auth/BGALZBROOZ6GPGZ45AYPCRTYYMX2HAVCNFSM6AAAAABC7RYYXWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMBQGE2TEMJZGY__;!!KDf9ebxpXGLC!BpDRMqtDGEgqY7kCvEHNnFTDlD7hII-xAPBRjcuM_gPGvt7KVPsmvyp5L9Ud0PEPnF0ryhUrPzIB-PBxeWcZgvgFpd9$. You are receiving this because you were mentioned.Message ID: @.@.**_>> ---------------------------- This e-mail is for the use of the intended recipient(s) only. If you have received in error, please notify the sender immediately and delete it. If you are not the intended recipient, you must not use, disclose or distribute this e-mail without the author prior permission. Ingram Micro checks outgoing mail and accepts no liability for any loss or damage caused by software viruses. ---------------------------- [Ingram_2818e5de]

Hi @kiranIngram08 ,Will share an update by eod,Thanks

Hi @kiranIngram08 ,I don't have access to publisher id in partner center to upload the package,will reach team to complete this activity.