Microsoft 365 Administrator — Question 210

You have a Microsoft 365 E5 subscription.

You plan to ingest syslog data from a supported firewall device to Microsoft Defender for Cloud Apps.

You need to configure automatic log upload.

Which two components should you configure for the log collector? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

Answer options

Correct answer: B, E

Explanation

To configure the log collector for automatic log upload, you need to define the data source (B) to specify where the logs are coming from, and the host IP address or FQDN (E) to point to the log source. The other options, while potentially relevant in other contexts, are not necessary for the initial setup of log collection in this scenario.