Ga naar hoofdinhoud

Microsoft Intune Compliance

Microsoft Intune Compliance Event Monitor

The Microsoft Intune Compliance Event Monitor keeps an eye on all Intune-connected network devices and sends alerts about various compliance metrics.

notitie

Overview

The Microsoft Intune Compliance Event Monitor watches over devices in Microsoft Intune and alerts about their compliance.

info

Use Cases

  • Keeping track of security, compliance, and encryption for all connected devices
  • Receiving alerts before device certificates expire

Monitoring Options

This event monitor provides the following options:

  • Alert with [Info/Warning/Error/Critical] if Azure cannot be contacted: Triggered if the event monitor cannot contact Microsoft Azure.
  • Alert with [Info/Warning/Error/Critical] if the device is not found in Microsoft Intune: Receive an alert if network devices connected to this event monitor cannot be found in Microsoft Intune.
  • Alert with [Info/Warning/Error/Critical] if the device is not in a compliant state: Sends an alert if the event monitor detects devices not in a compliant state.
  • Alert with [Info/Warning/Error/Critical] if the device is not in a registered state: Notifies if any devices are unregistered in Intune.
  • Alert with [Info/Warning/Error/Critical] if the device is not encrypted: Receive an alert if the event monitor detects unencrypted devices.
  • Alert if a specified amount of time has passed since the last device check-in: Specify the time that has to pass since the last device check-in to trigger this alert.
  • Alert if the device's certificate will expire in less than a specified number of days: Receive a notification a specified number of days ahead of certificate expiry for connected devices.

Authentication and Security

The account used to authenticate must have the following permissions at both the application and delegated level:

  • DeviceManagementManagedDevices.ReadWrite.All
  • DeviceManagementManagedDevices.Read.All
  • User.Read
  • Organization.Read.All

Protocols

Data Points

This event monitor generates the following data points:

Data PointDescription
Global Service IssuesThe total number of issues Azure is experiencing globally.
Resource Health IssuesThe number of health issues your Azure resources are experiencing.
Security AdvisoriesThe number of security advisories detected.

Sample Output

Sample Output