azure-monitor-diagnostic-setting-destination
Diagnostic settings reveal log destinations and authorization-rule resource identifiers.
Where it sits
| location | Microsoft.Insights/diagnosticSettings.properties.{workspaceId,storageAccountId,eventHubAuthorizationRuleId,eventHubName,serviceBusRuleId} |
| location kind | config_field |
| data kinds | sensitive_data |
| emits edge | ContainsSecret |
| service | Azure Monitor / Activity Log (azure:monitor) |
Collection recipe
| access mode | read_api |
| operation | Diagnostic Settings - Get |
| response path | properties |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Insights/diagnosticSettings/read
References