Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
Reference for ZTSGraph table in Azure Monitor Logs.
| Attribute | Value |
|---|---|
| Category | Azure Resources, Network, Security |
| Basic Logs Eligible | ✓ Yes (source) |
| Supports Transformations | ✓ Yes (source) |
| Ingestion API Supported | ✗ No |
| Lake-Only Ingestion | ✓ Yes |
| Azure Monitor Tables Reference | View Documentation |
Source: Azure Monitor documentation
| Column Name | Type | Description |
|---|---|---|
| _BilledSize | real | The record size in bytes |
| _IsBillable | string | Specifies whether ingesting the data is billable. When _IsBillable isfalseingestion isn't billed to your Azure account |
| _ResourceId | string | A unique identifier for the resource that the record is associated with |
| _SubscriptionId | string | A unique identifier for the subscription that the record is associated with |
| BytesIn | real | Number of incoming bytes. |
| BytesOut | real | Number of outgoing bytes. |
| ConnectionsIn | real | Number of incoming connections. |
| ConnectionsOut | real | Number of outgoing connections. |
| FlowDirection | string | Direction of network flow (Inbound/Outbound). |
| LocalIdentifier | string | VM's MAC address. |
| LocalIP | string | IP address. |
| PacketLastSeenAt | datetime | Timestamp when the last packet was seen. |
| PacketsIn | real | Number of incoming packets. |
| PacketsOut | real | Number of outgoing packets. |
| Port | int | Network port number. |
| Protocol | string | Network protocol used. |
| RemoteIdentifier | string | Remote connection's MAC address (when available). |
| RemoteIP | string | Remote IP address. |
| RunVersion | string | Run version identifier. |
| SourceSystem | string | The type of agent the event was collected by. For example,OpsManagerfor Windows agent, either direct connect or Operations Manager,Linuxfor all Linux agents, orAzurefor Azure Diagnostics |
| TenantId | string | The Log Analytics workspace ID |
| TimeGenerated | datetime | DateTime rounded by the hour. |
| Type | string | The name of the table |
Official Microsoft Learn documentation for field/column information:
This table collects data from the following Azure resource types:
microsoft.zerotrustsegmentation/segmentationmanagersBrowse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊