Soru

Zorluk: KolayMonitoring and Log Routing Solutions

You are designing a log routing and monitoring strategy for an Azure infrastructure solution. Match each Azure destination to its primary use case.

  • Azure Storage AccountCost-effective, long-term archival and data retention for compliance audits.
  • Azure Event HubsReal-time ingestion and streaming of telemetry to third-party SIEM platforms.
  • Azure Monitor Log Analytics workspaceCentralized interactive querying, visualization, and metric alerting.

Cevap

Azure Storage Account matches with cost-effective, long-term archival and data retention for compliance audits. Azure Event Hubs matches with real-time ingestion and streaming of telemetry to third-party SIEM platforms. Azure Monitor Log Analytics workspace matches with centralized interactive querying, visualization, and metric alerting.
Each Azure log destination serves a distinct architectural purpose: Storage Accounts provide high-capacity, low-cost long-term retention; Event Hubs enable real-time ingestion and external data forwarding; Log Analytics workspaces enable immediate, rich analysis and alerting.

Adım Adım Çözüm

1
Identify the destination engineered for maximum cost efficiency over long storage durations.
Azure Storage Account matches with long-term archival and compliance retention.
Azure Blob Storage tiers (cool/cold/archive) offer very low storage costs for logs that do not need to be searched frequently.
2
Identify the destination designed for high-throughput, low-latency log streaming to external integrations.
Azure Event Hubs matches with real-time streaming to third-party SIEMs.
Azure Event Hubs operates as a message broker capable of streaming telemetry directly to external endpoints like Splunk or QRadar.
3
Identify the destination built for data analysis, diagnostic queries, and performance dashboards.
Azure Monitor Log Analytics workspace matches with interactive querying, visualization, and alerting.
Log Analytics supports Kusto Query Language (KQL) search, visual charts, and integration with Azure Monitor Alert rules.

Anahtar Kavram

Log routing paths and destinations within Azure Monitor diagnostic settings.
Tahmini Süre:1m 0s
Bu soruyu puanla