Skip to content

Sentinel Vnet FL workbook for Traffic Analytics - #14819

Open
IshpreetKaur2002 wants to merge 3 commits into
Azure:masterfrom
IshpreetKaur01:ishpreet/sentinel-vnetFL-workbook
Open

Sentinel Vnet FL workbook for Traffic Analytics#14819
IshpreetKaur2002 wants to merge 3 commits into
Azure:masterfrom
IshpreetKaur01:ishpreet/sentinel-vnetFL-workbook

Conversation

@IshpreetKaur2002

Copy link
Copy Markdown

Change(s):
Added a new Microsoft Sentinel workbook: Azure Network Watcher - VNet Flow Logs (AzureNetworkWatcher-VnetFL.json)
Added preview images for the workbook (dark and light themes): AzureNetworkWatcher-VNetFLBlack.png and AzureNetworkWatcher-VNetFLWhite.png
Added workbook metadata entry in WorkbooksMetadata.json with data dependency on NTANetAnalytics

Reason for Change(s):
Introduces a new community workbook for analyzing Azure Virtual Network flow logs via Network Watcher Traffic Analytics. The workbook enables users to trace malicious traffic flows, drill down into protocols, source/destination IPs, machines, countries, and subnets, and identify weak VNet rules.

Testing Completed:
Workbook JSON validates and renders correctly in Microsoft Sentinel
Preview images display properly in both dark and light mode

Checked that the validations are passing and have addressed any issues that are present:
Yes

References:


@IshpreetKaur2002
IshpreetKaur2002 requested review from a team as code owners August 4, 2026 07:04
@IshpreetKaur2002

Copy link
Copy Markdown
Author

@microsoft-github-policy-service agree company="Microsoft"

1 similar comment
@IshpreetKaur2002

Copy link
Copy Markdown
Author

@microsoft-github-policy-service agree company="Microsoft"

@v-atulyadav v-atulyadav self-assigned this Aug 4, 2026
@v-atulyadav v-atulyadav added the Workbook Workbook specialty review needed label Aug 4, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Workbook Workbook specialty review needed

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants