- Lab
- A Cloud Guru
Monitor Storage for Security Events with Azure Monitor
The Azure Monitor Logs feature of Azure Monitor collects, stores, and organizes log and performance data from monitored resources. In this lab, you will enable diagnostic settings on a storage account to send Blob storage logs to a Log Analytics workspace. You will also use Azure Monitor Logs to query for anonymous access to blobs and create an Azure Monitor alert to notify you when anonymous access to a storage account is logged.
Path Info
Table of Contents
-
Challenge
Configure Diagnostic Settings
- Configure diagnostic settings on the existing storage account to send Blob service logs to the existing Log Analytics workspace for the following categories:
- Storage Read
- Storage Write
- Storage Delete
- Configure diagnostic settings on the existing storage account to send Blob service logs to the existing Log Analytics workspace for the following categories:
-
Challenge
Perform Anonymous Access
IMPORTANT: Do not upload a file that contains confidential or private information.
- Upload a test file to the
data
container and access the file anonymously.
- Upload a test file to the
-
Challenge
Query Azure Monitor Logs
- Write a query using Azure Monitor Log Analytics to determine if anonymous access has been recorded against the storage account:
StorageBlobLogs | where AuthenticationType == 'Anonymous' and StatusCode == 200
- Write a query using Azure Monitor Log Analytics to determine if anonymous access has been recorded against the storage account:
-
Challenge
Create an Azure Monitor Alert
- Use Azure Monitor alerts to create an alert for anonymous access. Name the alert Anonymous Blob Access.
- Access the test file anonymously again.
- View the alert in Azure Monitor.
What's a lab?
Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.