Deleting Microsoft Sentinel but keep the ingested data
Read OriginalThis article provides a step-by-step guide for disconnecting Microsoft Sentinel from a Log Analytics Workspace (LAW) to stop billing while preserving the ingested data for testing and integration fine-tuning. It covers navigating Azure Portal, removing the SecurityInsights solution, and verifying data retention via queries. Aimed at IT professionals managing Azure costs, it emphasizes caution and recommends testing in non-production environments.
Comments
No comments yet
Be the first to share your thoughts!
Browser Extension
Get instant access to AllDevBlogs from your browser