This article covers how to configure SonicOS to send CEF/ArcSight-formatted Syslog data to an Azure Monitor Agent (AMA) Forwarder or other Syslog server.
Instructions
Installing the Common Event Format data connector
For Microsoft Sentinel integration, use the following settings for your Syslog server entry: