Health logs for operations performed by Microsoft Sentinel resources such as Data Connectors, Analytic Rules and more. These logs can be used to monitor the health of your Microsoft Sentinel resources.
Schema
Name
Description
Type
_BilledSize
Double
_IsBillable
String
Description
The operation description.
String
ExtendedProperties
Additional information based on the resource type.
Object
OperationName
The name of the operation that triggered the event.
String
Reason
The operation reason.
String
RecordId
A unique record identifier.
String
SentinelResourceId
The Sentinel resource ID.
String
SentinelResourceKind
The resource kind, for example: connector kind (such as Office365, AmazonWebServicesCloudTrail), alert rule kind (scheduld).
String
SentinelResourceName
The Sentinel resource name.
String
SentinelResourceType
The resource type, for example: DataConnector, AlertRule, etc.
String
SourceSystem
String
Status
Status of the operation, for example: Success, Failure, Warning, Informational, Partial Success.
String
TenantId
Unique identifier of the tenant into which the data connector ingests data.
String
TimeGenerated
The timestamp (UTC) of when the event was generated.