There’s been a mighty effort over the last many months to include helpful links and information directly in the Log Analytics workspace for Azure Monitor – which, thankfully, is also available to Azure Sentinel customers in the Logs blade.
A recent update makes getting better information around Time Range syntax quicker and easier, and I’m positive many of you may have missed this – hence, the effort here to highlight it.
In the dropdown for the Time Range, there’s now a “Time range syntax” option that produces a pop-up window explaining and providing some custom options for customizing your own queries.

=========================
[Want to discuss this further? Hit me up on Twitter or LinkedIn]
[Subscribe to the RSS feed for this blog]
[Subscribe to the Weekly Azure Sentinel Newsletter]
[Subscribe to the Bi-Weekly Azure Security Center Newsletter]
You must log in to post a comment.