In Microsoft Sentinel, data from applications, security solutions, and services is ingested through data connectors. To integrate App1 with Sentinel and meet its monitoring or data ingestion requirements, you must configure a connector.
Microsoft Sentinel documentation specifies:
“Data connectors provide the integration point between Microsoft Sentinel and other data sources, including Microsoft services, third-party solutions, and custom applications.”
Connectors manage authentication, data formats, and continuous ingestion of logs or alerts into Sentinel’s Log Analytics workspace.
Other options:
Trigger – used for playbooks or automation, not data ingestion.
Authorization – a setting used within connectors or playbooks, not configured separately.
✅ Correct configuration for App1: a connector
Submit