azure-loganalytics-workspace-shared-keys
Workspace shared keys authenticate legacy Logs Ingestion/Data Collector API writes.
Where it sits
| location | Microsoft.OperationalInsights/workspaces/sharedKeys response.{primarySharedKey,secondarySharedKey} |
| location kind | secret_value |
| data kinds | credential access_key secret_key |
| emits edge | ExposesCredential |
| service | Log Analytics / Sentinel (azure:loganalytics) |
Collection recipe
| access mode | read_api |
| operation | Shared Keys - Get Shared Keys |
| response path | {primarySharedKey,secondarySharedKey} |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.OperationalInsights/workspaces/sharedkeys/read
References