sub1という名前のAzureサブスクリプションを作成します。 sub1では、workspace1という名前のLog Analyticsワークスペースを作成します。 Azure Security Center を有効にし、ワークスペース 1 を使用するように Security Center を構成します。 Security Centerが、workspace1にレポートを送信するAzure仮想マシンからのイベントを処理するようにする必要があります。 あなたはどうすべきでしょうか?
正解:A
Data collection Store additional raw data - Windows security events To help audit, investigate, and analyze threats, you can collect raw events, logs, and additional security data and save it to your Log Analytics workspace. https://docs.microsoft.com/en-us/azure/security-center/security-center-enable-data-collection