← Go back to library

Receive Azure Sentinel alerts and block IPs with firewall rules

Setup an event subscription in Azure Sentinel to send new alerts to a webhook. If the alert is related to Brute Force attacks, setup a network security rule to block access from the source IP.

Created by

Conor Dunne

How it works

Import this story to your tenant, from where you can adapt it to meet your unique needs.

Import
Was this story helpful?