Microsoft Sentinel
Cloud and workloads

Collect SAP HANA audit logs in Microsoft Sentinel

In brief

The article description now focuses on ingesting SAP HANA audit logs into Microsoft Sentinel for customer-managed environments and identifies security, infrastructure, and SAP BASIS teams as relevant audiences. The publication metadata was updated, and a “Learn more” line was removed.

What Defender admins need to know

Administrators can use the revised scope and audience information to assess the article’s relevance; no administrator action is stated.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.


See more information on the Kusto operators and functions used in the sample query, in the Kusto documentation:

- [***let*** statement](/kusto/query/let-statement?view=microsoft-sentinel&preserve-view=true)
- [***datatable*** operator](/kusto/query/datatable-operator?view=microsoft-sentinel&preserve-view=true)
- [***where*** operator](/kusto/query/where-operator?view=microsoft-sentinel&preserve-view=true)

## Related content

Learn more about the Microsoft Sentinel solution for SAP applications:

- [Deploy Microsoft Sentinel solution for SAP applications](deployment-overview.md)
- [Deploy the Microsoft Sentinel solution for SAP BTP](deploy-sap-btp-solution.md)