architecture/wm_azure/Readme.md
Microsoft Azure infrastructure resources can be divided into two types of logs, the Activity logs and the Diagnostic logs. The operations performed on a resource outside of the infrastructure are stored in the Activity logs, providing information on those operations. On the other hand, the data referring to the operation of a resource is stored in the Diagnostic logs.
Wazuh has the ability to obtain and read Microsoft Azure logs through:
Sequence diagram shows the basic flow of Wazuh azure integration based on the configuration provided. Steps are: