Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
Defender XDR Only: This table is available in Microsoft Defender XDR advanced hunting but is not available in the Azure Monitor Log Analytics table reference.
Activities performed during Microsoft Teams calls in your organization
| Attribute | Value |
|---|---|
| Category | XDR |
| Ingestion API Supported | ✗ No |
| Defender XDR Advanced Hunting Schema | View Documentation |
Source: Azure Monitor documentation
| Column Name | Type | Description |
|---|---|---|
| ActivityId | string | Unique identifier for the activity, as generated by Microsoft 365 |
| ActivityInitiatorDisplayName | string | Display name of the participant who initiated the activity |
| ActivityInitiatorId | string | Unique identifier for the participant who initiated the activity |
| ActivityInitiatorUpn | string | User principal name of the participant who initiated the activity |
| ActivityTimestamp | datetime | Date and time when the activity was recorded |
| ActivityType | string | Type of activity performed during the call |
| CallId | string | Unique identifier for the call, as generated by Microsoft 365 |
| CallJoinUrl | string | Link that participants use to join the call |
| CallSchedulingType | string | Type of scheduling for the call, such asAdhoc,Scheduled, orRecurring |
| OriginatorUpn | string | User principal name of the caller who initiated the call |
| OriginatorUserDisplayName | string | Display name of the caller who initiated the call |
| ThreadId | string | Unique identifier for the thread associated with the call |
Official Microsoft Learn documentation for field/column information:
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊