A resource group is a logical container for the Azure resources used by the integration. If you already have a resource group that contains your Microsoft Sentinel workspace, you can use the existing resource group.
-
Sign in to the Azure portal.
-
Search for Resource groups in the search bar.
-
In the Resource groups page, click Create.
-
Select the required Azure subscription.
-
In the Name field, enter a name for the resource group. For example, rg-avanan-sentinel.
-
From the Region dropdown, select the required Azure region.
-
Review the configuration details and click Review + Create.
-
Click Create.