azure-loganalytics-workspace-shared-keys

Workspace shared keys authenticate legacy Logs Ingestion/Data Collector API writes.

azurecritical service: azure:loganalytics emits ExposesCredential

Where it sits

locationMicrosoft.OperationalInsights/workspaces/sharedKeys response.{primarySharedKey,secondarySharedKey}
location kindsecret_value
data kindscredential access_key secret_key
emits edgeExposesCredential
serviceLog Analytics / Sentinel (azure:loganalytics)

Collection recipe

access moderead_api
operationShared Keys - Get Shared Keys
response path{primarySharedKey,secondarySharedKey}
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.OperationalInsights/workspaces/sharedkeys/read

References

move · open · esc close