You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: content/admin/monitoring-activity-in-your-enterprise/reviewing-audit-logs-for-your-enterprise/streaming-the-audit-log-for-your-enterprise.md
+9-5Lines changed: 9 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -58,8 +58,8 @@ To set up the audit log stream, follow the instructions for your provider:
@@ -213,7 +213,7 @@ From {% data variables.product.prodname_dotcom %}:
213
213
214
214
### Setting up streaming to Azure Event Hubs
215
215
216
-
> [!NOTE]
216
+
> [!NOTE]
217
217
> - Event Hubs instances in Azure Government are not supported.
218
218
> - With **{% data variables.enterprise.data_residency %},** audit log streaming to Azure Event Hubs is not supported with IP Firewall rules enabled.
219
219
@@ -270,6 +270,8 @@ To set up streaming to Google Cloud Storage, create a service account in Google
270
270
1. To verify that {% data variables.product.prodname_dotcom %} can connect and write to the Google Cloud Storage bucket, click **Check endpoint**.
271
271
{% data reusables.enterprise.verify-audit-log-streaming-endpoint %}
272
272
273
+
{% ifversion ghec %}
274
+
273
275
### Setting up streaming to Microsoft Purview
274
276
275
277
{% data reusables.copilot.agent-session-streaming-availability-note %}
@@ -284,6 +286,8 @@ To set up streaming to Microsoft Purview, configure streaming in {% data variabl
284
286
1. Click **Authorize with Entra**.
285
287
1. When you're redirected to Microsoft Entra, add the {% data variables.product.github %} app and authorize it for your tenant.
286
288
289
+
{% endif %}
290
+
287
291
### Setting up streaming to Splunk
288
292
289
293
To stream audit logs to Splunk's HTTP Event Collector (HEC) endpoint, make sure that the endpoint is configured to accept HTTPS connections. See [Set up and use HTTP Event Collector in Splunk Web](https://docs.splunk.com/Documentation/Splunk/latest/Data/UsetheHTTPEventCollector) in the Splunk documentation.
@@ -355,8 +359,8 @@ To restart streaming, click **Resume stream**.
355
359
{% data reusables.copilot.agent-session-streaming-availability-note %}
356
360
357
361
{% data reusables.enterprise-accounts.access-enterprise %}
358
-
1. At the top of the page, click AI Controls
359
-
1. Under "Copilot", select **Enabled everywhere** for "Copilot Usage Records Streaming"
362
+
1. At the top of the page, click AI Controls
363
+
1. Under "Copilot", select **Enabled everywhere** for "Copilot Usage Records Streaming"
360
364
1. Configure a streaming destination. See [Setting up audit log streaming](#setting-up-audit-log-streaming).
361
365
362
366
You can also retrieve {% data variables.product.prodname_copilot_short %} usage data through the REST API by selecting **Enabled everywhere** for "Copilot Usage Records API". See [AUTOTITLE](/rest/copilot/copilot-usage-metrics#get-copilot-usage-records-for-an-enterprise).
0 commit comments