azure-native.insights.DataCollectionRule
Explore with Pulumi AI
Definition of ARM tracked top level resource. API Version: 2019-11-01-preview.
Example Usage
Create or update data collection rule
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() => 
{
    var dataCollectionRule = new AzureNative.Insights.DataCollectionRule("dataCollectionRule", new()
    {
        DataCollectionRuleName = "myCollectionRule",
        DataFlows = new[]
        {
            new AzureNative.Insights.Inputs.DataFlowArgs
            {
                Destinations = new[]
                {
                    "centralWorkspace",
                },
                Streams = new[]
                {
                    "Microsoft-Perf",
                    "Microsoft-Syslog",
                    "Microsoft-WindowsEvent",
                },
            },
        },
        DataSources = new AzureNative.Insights.Inputs.DataCollectionRuleDataSourcesArgs
        {
            PerformanceCounters = new[]
            {
                new AzureNative.Insights.Inputs.PerfCounterDataSourceArgs
                {
                    CounterSpecifiers = new[]
                    {
                        "\\Processor(_Total)\\% Processor Time",
                        "\\Memory\\Committed Bytes",
                        "\\LogicalDisk(_Total)\\Free Megabytes",
                        "\\PhysicalDisk(_Total)\\Avg. Disk Queue Length",
                    },
                    Name = "cloudTeamCoreCounters",
                    SamplingFrequencyInSeconds = 15,
                    Streams = new[]
                    {
                        "Microsoft-Perf",
                    },
                },
                new AzureNative.Insights.Inputs.PerfCounterDataSourceArgs
                {
                    CounterSpecifiers = new[]
                    {
                        "\\Process(_Total)\\Thread Count",
                    },
                    Name = "appTeamExtraCounters",
                    SamplingFrequencyInSeconds = 30,
                    Streams = new[]
                    {
                        "Microsoft-Perf",
                    },
                },
            },
            Syslog = new[]
            {
                new AzureNative.Insights.Inputs.SyslogDataSourceArgs
                {
                    FacilityNames = new[]
                    {
                        "cron",
                    },
                    LogLevels = new[]
                    {
                        "Debug",
                        "Critical",
                        "Emergency",
                    },
                    Name = "cronSyslog",
                    Streams = new[]
                    {
                        "Microsoft-Syslog",
                    },
                },
                new AzureNative.Insights.Inputs.SyslogDataSourceArgs
                {
                    FacilityNames = new[]
                    {
                        "syslog",
                    },
                    LogLevels = new[]
                    {
                        "Alert",
                        "Critical",
                        "Emergency",
                    },
                    Name = "syslogBase",
                    Streams = new[]
                    {
                        "Microsoft-Syslog",
                    },
                },
            },
            WindowsEventLogs = new[]
            {
                new AzureNative.Insights.Inputs.WindowsEventLogDataSourceArgs
                {
                    Name = "cloudSecurityTeamEvents",
                    Streams = new[]
                    {
                        "Microsoft-WindowsEvent",
                    },
                    XPathQueries = new[]
                    {
                        "Security!",
                    },
                },
                new AzureNative.Insights.Inputs.WindowsEventLogDataSourceArgs
                {
                    Name = "appTeam1AppEvents",
                    Streams = new[]
                    {
                        "Microsoft-WindowsEvent",
                    },
                    XPathQueries = new[]
                    {
                        "System![System[(Level = 1 or Level = 2 or Level = 3)]]",
                        "Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]",
                    },
                },
            },
        },
        Destinations = new AzureNative.Insights.Inputs.DataCollectionRuleDestinationsArgs
        {
            LogAnalytics = new[]
            {
                new AzureNative.Insights.Inputs.LogAnalyticsDestinationArgs
                {
                    Name = "centralWorkspace",
                    WorkspaceResourceId = "/subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace",
                },
            },
        },
        Location = "eastus",
        ResourceGroupName = "myResourceGroup",
    });
});
package main
import (
	insights "github.com/pulumi/pulumi-azure-native-sdk/insights"
	"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
	pulumi.Run(func(ctx *pulumi.Context) error {
		_, err := insights.NewDataCollectionRule(ctx, "dataCollectionRule", &insights.DataCollectionRuleArgs{
			DataCollectionRuleName: pulumi.String("myCollectionRule"),
			DataFlows: []insights.DataFlowArgs{
				{
					Destinations: pulumi.StringArray{
						pulumi.String("centralWorkspace"),
					},
					Streams: pulumi.StringArray{
						pulumi.String("Microsoft-Perf"),
						pulumi.String("Microsoft-Syslog"),
						pulumi.String("Microsoft-WindowsEvent"),
					},
				},
			},
			DataSources: insights.DataCollectionRuleResponseDataSources{
				PerformanceCounters: insights.PerfCounterDataSourceArray{
					&insights.PerfCounterDataSourceArgs{
						CounterSpecifiers: pulumi.StringArray{
							pulumi.String("\\Processor(_Total)\\% Processor Time"),
							pulumi.String("\\Memory\\Committed Bytes"),
							pulumi.String("\\LogicalDisk(_Total)\\Free Megabytes"),
							pulumi.String("\\PhysicalDisk(_Total)\\Avg. Disk Queue Length"),
						},
						Name:                       pulumi.String("cloudTeamCoreCounters"),
						SamplingFrequencyInSeconds: pulumi.Int(15),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-Perf"),
						},
					},
					&insights.PerfCounterDataSourceArgs{
						CounterSpecifiers: pulumi.StringArray{
							pulumi.String("\\Process(_Total)\\Thread Count"),
						},
						Name:                       pulumi.String("appTeamExtraCounters"),
						SamplingFrequencyInSeconds: pulumi.Int(30),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-Perf"),
						},
					},
				},
				Syslog: insights.SyslogDataSourceArray{
					&insights.SyslogDataSourceArgs{
						FacilityNames: pulumi.StringArray{
							pulumi.String("cron"),
						},
						LogLevels: pulumi.StringArray{
							pulumi.String("Debug"),
							pulumi.String("Critical"),
							pulumi.String("Emergency"),
						},
						Name: pulumi.String("cronSyslog"),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-Syslog"),
						},
					},
					&insights.SyslogDataSourceArgs{
						FacilityNames: pulumi.StringArray{
							pulumi.String("syslog"),
						},
						LogLevels: pulumi.StringArray{
							pulumi.String("Alert"),
							pulumi.String("Critical"),
							pulumi.String("Emergency"),
						},
						Name: pulumi.String("syslogBase"),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-Syslog"),
						},
					},
				},
				WindowsEventLogs: insights.WindowsEventLogDataSourceArray{
					&insights.WindowsEventLogDataSourceArgs{
						Name: pulumi.String("cloudSecurityTeamEvents"),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-WindowsEvent"),
						},
						XPathQueries: pulumi.StringArray{
							pulumi.String("Security!"),
						},
					},
					&insights.WindowsEventLogDataSourceArgs{
						Name: pulumi.String("appTeam1AppEvents"),
						Streams: pulumi.StringArray{
							pulumi.String("Microsoft-WindowsEvent"),
						},
						XPathQueries: pulumi.StringArray{
							pulumi.String("System![System[(Level = 1 or Level = 2 or Level = 3)]]"),
							pulumi.String("Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]"),
						},
					},
				},
			},
			Destinations: insights.DataCollectionRuleResponseDestinations{
				LogAnalytics: insights.LogAnalyticsDestinationArray{
					&insights.LogAnalyticsDestinationArgs{
						Name:                pulumi.String("centralWorkspace"),
						WorkspaceResourceId: pulumi.String("/subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace"),
					},
				},
			},
			Location:          pulumi.String("eastus"),
			ResourceGroupName: pulumi.String("myResourceGroup"),
		})
		if err != nil {
			return err
		}
		return nil
	})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.insights.DataCollectionRule;
import com.pulumi.azurenative.insights.DataCollectionRuleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
    public static void main(String[] args) {
        Pulumi.run(App::stack);
    }
    public static void stack(Context ctx) {
        var dataCollectionRule = new DataCollectionRule("dataCollectionRule", DataCollectionRuleArgs.builder()        
            .dataCollectionRuleName("myCollectionRule")
            .dataFlows(Map.ofEntries(
                Map.entry("destinations", "centralWorkspace"),
                Map.entry("streams",                 
                    "Microsoft-Perf",
                    "Microsoft-Syslog",
                    "Microsoft-WindowsEvent")
            ))
            .dataSources(Map.ofEntries(
                Map.entry("performanceCounters",                 
                    Map.ofEntries(
                        Map.entry("counterSpecifiers",                         
                            "\\Processor(_Total)\\% Processor Time",
                            "\\Memory\\Committed Bytes",
                            "\\LogicalDisk(_Total)\\Free Megabytes",
                            "\\PhysicalDisk(_Total)\\Avg. Disk Queue Length"),
                        Map.entry("name", "cloudTeamCoreCounters"),
                        Map.entry("samplingFrequencyInSeconds", 15),
                        Map.entry("streams", "Microsoft-Perf")
                    ),
                    Map.ofEntries(
                        Map.entry("counterSpecifiers", "\\Process(_Total)\\Thread Count"),
                        Map.entry("name", "appTeamExtraCounters"),
                        Map.entry("samplingFrequencyInSeconds", 30),
                        Map.entry("streams", "Microsoft-Perf")
                    )),
                Map.entry("syslog",                 
                    Map.ofEntries(
                        Map.entry("facilityNames", "cron"),
                        Map.entry("logLevels",                         
                            "Debug",
                            "Critical",
                            "Emergency"),
                        Map.entry("name", "cronSyslog"),
                        Map.entry("streams", "Microsoft-Syslog")
                    ),
                    Map.ofEntries(
                        Map.entry("facilityNames", "syslog"),
                        Map.entry("logLevels",                         
                            "Alert",
                            "Critical",
                            "Emergency"),
                        Map.entry("name", "syslogBase"),
                        Map.entry("streams", "Microsoft-Syslog")
                    )),
                Map.entry("windowsEventLogs",                 
                    Map.ofEntries(
                        Map.entry("name", "cloudSecurityTeamEvents"),
                        Map.entry("streams", "Microsoft-WindowsEvent"),
                        Map.entry("xPathQueries", "Security!")
                    ),
                    Map.ofEntries(
                        Map.entry("name", "appTeam1AppEvents"),
                        Map.entry("streams", "Microsoft-WindowsEvent"),
                        Map.entry("xPathQueries",                         
                            "System![System[(Level = 1 or Level = 2 or Level = 3)]]",
                            "Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]")
                    ))
            ))
            .destinations(Map.of("logAnalytics", Map.ofEntries(
                Map.entry("name", "centralWorkspace"),
                Map.entry("workspaceResourceId", "/subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace")
            )))
            .location("eastus")
            .resourceGroupName("myResourceGroup")
            .build());
    }
}
import * as pulumi from "@pulumi/pulumi";
import * as azure_native from "@pulumi/azure-native";
const dataCollectionRule = new azure_native.insights.DataCollectionRule("dataCollectionRule", {
    dataCollectionRuleName: "myCollectionRule",
    dataFlows: [{
        destinations: ["centralWorkspace"],
        streams: [
            "Microsoft-Perf",
            "Microsoft-Syslog",
            "Microsoft-WindowsEvent",
        ],
    }],
    dataSources: {
        performanceCounters: [
            {
                counterSpecifiers: [
                    "\\Processor(_Total)\\% Processor Time",
                    "\\Memory\\Committed Bytes",
                    "\\LogicalDisk(_Total)\\Free Megabytes",
                    "\\PhysicalDisk(_Total)\\Avg. Disk Queue Length",
                ],
                name: "cloudTeamCoreCounters",
                samplingFrequencyInSeconds: 15,
                streams: ["Microsoft-Perf"],
            },
            {
                counterSpecifiers: ["\\Process(_Total)\\Thread Count"],
                name: "appTeamExtraCounters",
                samplingFrequencyInSeconds: 30,
                streams: ["Microsoft-Perf"],
            },
        ],
        syslog: [
            {
                facilityNames: ["cron"],
                logLevels: [
                    "Debug",
                    "Critical",
                    "Emergency",
                ],
                name: "cronSyslog",
                streams: ["Microsoft-Syslog"],
            },
            {
                facilityNames: ["syslog"],
                logLevels: [
                    "Alert",
                    "Critical",
                    "Emergency",
                ],
                name: "syslogBase",
                streams: ["Microsoft-Syslog"],
            },
        ],
        windowsEventLogs: [
            {
                name: "cloudSecurityTeamEvents",
                streams: ["Microsoft-WindowsEvent"],
                xPathQueries: ["Security!"],
            },
            {
                name: "appTeam1AppEvents",
                streams: ["Microsoft-WindowsEvent"],
                xPathQueries: [
                    "System![System[(Level = 1 or Level = 2 or Level = 3)]]",
                    "Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]",
                ],
            },
        ],
    },
    destinations: {
        logAnalytics: [{
            name: "centralWorkspace",
            workspaceResourceId: "/subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace",
        }],
    },
    location: "eastus",
    resourceGroupName: "myResourceGroup",
});
import pulumi
import pulumi_azure_native as azure_native
data_collection_rule = azure_native.insights.DataCollectionRule("dataCollectionRule",
    data_collection_rule_name="myCollectionRule",
    data_flows=[azure_native.insights.DataFlowArgs(
        destinations=["centralWorkspace"],
        streams=[
            "Microsoft-Perf",
            "Microsoft-Syslog",
            "Microsoft-WindowsEvent",
        ],
    )],
    data_sources=azure_native.insights.DataCollectionRuleResponseDataSourcesArgs(
        performance_counters=[
            azure_native.insights.PerfCounterDataSourceArgs(
                counter_specifiers=[
                    "\\Processor(_Total)\\% Processor Time",
                    "\\Memory\\Committed Bytes",
                    "\\LogicalDisk(_Total)\\Free Megabytes",
                    "\\PhysicalDisk(_Total)\\Avg. Disk Queue Length",
                ],
                name="cloudTeamCoreCounters",
                sampling_frequency_in_seconds=15,
                streams=["Microsoft-Perf"],
            ),
            azure_native.insights.PerfCounterDataSourceArgs(
                counter_specifiers=["\\Process(_Total)\\Thread Count"],
                name="appTeamExtraCounters",
                sampling_frequency_in_seconds=30,
                streams=["Microsoft-Perf"],
            ),
        ],
        syslog=[
            azure_native.insights.SyslogDataSourceArgs(
                facility_names=["cron"],
                log_levels=[
                    "Debug",
                    "Critical",
                    "Emergency",
                ],
                name="cronSyslog",
                streams=["Microsoft-Syslog"],
            ),
            azure_native.insights.SyslogDataSourceArgs(
                facility_names=["syslog"],
                log_levels=[
                    "Alert",
                    "Critical",
                    "Emergency",
                ],
                name="syslogBase",
                streams=["Microsoft-Syslog"],
            ),
        ],
        windows_event_logs=[
            azure_native.insights.WindowsEventLogDataSourceArgs(
                name="cloudSecurityTeamEvents",
                streams=["Microsoft-WindowsEvent"],
                x_path_queries=["Security!"],
            ),
            azure_native.insights.WindowsEventLogDataSourceArgs(
                name="appTeam1AppEvents",
                streams=["Microsoft-WindowsEvent"],
                x_path_queries=[
                    "System![System[(Level = 1 or Level = 2 or Level = 3)]]",
                    "Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]",
                ],
            ),
        ],
    ),
    destinations=azure_native.insights.DataCollectionRuleResponseDestinationsArgs(
        log_analytics=[azure_native.insights.LogAnalyticsDestinationArgs(
            name="centralWorkspace",
            workspace_resource_id="/subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace",
        )],
    ),
    location="eastus",
    resource_group_name="myResourceGroup")
resources:
  dataCollectionRule:
    type: azure-native:insights:DataCollectionRule
    properties:
      dataCollectionRuleName: myCollectionRule
      dataFlows:
        - destinations:
            - centralWorkspace
          streams:
            - Microsoft-Perf
            - Microsoft-Syslog
            - Microsoft-WindowsEvent
      dataSources:
        performanceCounters:
          - counterSpecifiers:
              - \Processor(_Total)\% Processor Time
              - \Memory\Committed Bytes
              - \LogicalDisk(_Total)\Free Megabytes
              - \PhysicalDisk(_Total)\Avg. Disk Queue Length
            name: cloudTeamCoreCounters
            samplingFrequencyInSeconds: 15
            streams:
              - Microsoft-Perf
          - counterSpecifiers:
              - \Process(_Total)\Thread Count
            name: appTeamExtraCounters
            samplingFrequencyInSeconds: 30
            streams:
              - Microsoft-Perf
        syslog:
          - facilityNames:
              - cron
            logLevels:
              - Debug
              - Critical
              - Emergency
            name: cronSyslog
            streams:
              - Microsoft-Syslog
          - facilityNames:
              - syslog
            logLevels:
              - Alert
              - Critical
              - Emergency
            name: syslogBase
            streams:
              - Microsoft-Syslog
        windowsEventLogs:
          - name: cloudSecurityTeamEvents
            streams:
              - Microsoft-WindowsEvent
            xPathQueries:
              - Security!
          - name: appTeam1AppEvents
            streams:
              - Microsoft-WindowsEvent
            xPathQueries:
              - System![System[(Level = 1 or Level = 2 or Level = 3)]]
              - Application!*[System[(Level = 1 or Level = 2 or Level = 3)]]
      destinations:
        logAnalytics:
          - name: centralWorkspace
            workspaceResourceId: /subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.OperationalInsights/workspaces/centralTeamWorkspace
      location: eastus
      resourceGroupName: myResourceGroup
Create DataCollectionRule Resource
Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.
Constructor syntax
new DataCollectionRule(name: string, args: DataCollectionRuleArgs, opts?: CustomResourceOptions);@overload
def DataCollectionRule(resource_name: str,
                       args: DataCollectionRuleArgs,
                       opts: Optional[ResourceOptions] = None)
@overload
def DataCollectionRule(resource_name: str,
                       opts: Optional[ResourceOptions] = None,
                       resource_group_name: Optional[str] = None,
                       data_collection_rule_name: Optional[str] = None,
                       data_flows: Optional[Sequence[DataFlowArgs]] = None,
                       data_sources: Optional[DataCollectionRuleDataSourcesArgs] = None,
                       description: Optional[str] = None,
                       destinations: Optional[DataCollectionRuleDestinationsArgs] = None,
                       kind: Optional[Union[str, KnownDataCollectionRuleResourceKind]] = None,
                       location: Optional[str] = None,
                       tags: Optional[Mapping[str, str]] = None)func NewDataCollectionRule(ctx *Context, name string, args DataCollectionRuleArgs, opts ...ResourceOption) (*DataCollectionRule, error)public DataCollectionRule(string name, DataCollectionRuleArgs args, CustomResourceOptions? opts = null)
public DataCollectionRule(String name, DataCollectionRuleArgs args)
public DataCollectionRule(String name, DataCollectionRuleArgs args, CustomResourceOptions options)
type: azure-native:insights:DataCollectionRule
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.
Parameters
- name string
- The unique name of the resource.
- args DataCollectionRuleArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- resource_name str
- The unique name of the resource.
- args DataCollectionRuleArgs
- The arguments to resource properties.
- opts ResourceOptions
- Bag of options to control resource's behavior.
- ctx Context
- Context object for the current deployment.
- name string
- The unique name of the resource.
- args DataCollectionRuleArgs
- The arguments to resource properties.
- opts ResourceOption
- Bag of options to control resource's behavior.
- name string
- The unique name of the resource.
- args DataCollectionRuleArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- name String
- The unique name of the resource.
- args DataCollectionRuleArgs
- The arguments to resource properties.
- options CustomResourceOptions
- Bag of options to control resource's behavior.
Constructor example
The following reference example uses placeholder values for all input properties.
var dataCollectionRuleResource = new AzureNative.Insights.DataCollectionRule("dataCollectionRuleResource", new()
{
    ResourceGroupName = "string",
    DataCollectionRuleName = "string",
    DataFlows = new[]
    {
        
        {
            { "destinations", new[]
            {
                "string",
            } },
            { "streams", new[]
            {
                "string",
            } },
        },
    },
    DataSources = 
    {
        { "extensions", new[]
        {
            
            {
                { "extensionName", "string" },
                { "extensionSettings", "any" },
                { "inputDataSources", new[]
                {
                    "string",
                } },
                { "name", "string" },
                { "streams", new[]
                {
                    "string",
                } },
            },
        } },
        { "performanceCounters", new[]
        {
            
            {
                { "counterSpecifiers", new[]
                {
                    "string",
                } },
                { "name", "string" },
                { "samplingFrequencyInSeconds", 0 },
                { "streams", new[]
                {
                    "string",
                } },
            },
        } },
        { "syslog", new[]
        {
            
            {
                { "facilityNames", new[]
                {
                    "string",
                } },
                { "logLevels", new[]
                {
                    "string",
                } },
                { "name", "string" },
                { "streams", new[]
                {
                    "string",
                } },
            },
        } },
        { "windowsEventLogs", new[]
        {
            
            {
                { "name", "string" },
                { "streams", new[]
                {
                    "string",
                } },
                { "xPathQueries", new[]
                {
                    "string",
                } },
            },
        } },
    },
    Description = "string",
    Destinations = 
    {
        { "azureMonitorMetrics", 
        {
            { "name", "string" },
        } },
        { "logAnalytics", new[]
        {
            
            {
                { "name", "string" },
                { "workspaceResourceId", "string" },
            },
        } },
    },
    Kind = "string",
    Location = "string",
    Tags = 
    {
        { "string", "string" },
    },
});
example, err := insights.NewDataCollectionRule(ctx, "dataCollectionRuleResource", &insights.DataCollectionRuleArgs{
	ResourceGroupName:      "string",
	DataCollectionRuleName: "string",
	DataFlows: []map[string]interface{}{
		map[string]interface{}{
			"destinations": []string{
				"string",
			},
			"streams": []string{
				"string",
			},
		},
	},
	DataSources: map[string]interface{}{
		"extensions": []map[string]interface{}{
			map[string]interface{}{
				"extensionName":     "string",
				"extensionSettings": "any",
				"inputDataSources": []string{
					"string",
				},
				"name": "string",
				"streams": []string{
					"string",
				},
			},
		},
		"performanceCounters": []map[string]interface{}{
			map[string]interface{}{
				"counterSpecifiers": []string{
					"string",
				},
				"name":                       "string",
				"samplingFrequencyInSeconds": 0,
				"streams": []string{
					"string",
				},
			},
		},
		"syslog": []map[string]interface{}{
			map[string]interface{}{
				"facilityNames": []string{
					"string",
				},
				"logLevels": []string{
					"string",
				},
				"name": "string",
				"streams": []string{
					"string",
				},
			},
		},
		"windowsEventLogs": []map[string]interface{}{
			map[string]interface{}{
				"name": "string",
				"streams": []string{
					"string",
				},
				"xPathQueries": []string{
					"string",
				},
			},
		},
	},
	Description: "string",
	Destinations: map[string]interface{}{
		"azureMonitorMetrics": map[string]interface{}{
			"name": "string",
		},
		"logAnalytics": []map[string]interface{}{
			map[string]interface{}{
				"name":                "string",
				"workspaceResourceId": "string",
			},
		},
	},
	Kind:     "string",
	Location: "string",
	Tags: map[string]interface{}{
		"string": "string",
	},
})
var dataCollectionRuleResource = new DataCollectionRule("dataCollectionRuleResource", DataCollectionRuleArgs.builder()
    .resourceGroupName("string")
    .dataCollectionRuleName("string")
    .dataFlows(%!v(PANIC=Format method: runtime error: invalid memory address or nil pointer dereference))
    .dataSources(%!v(PANIC=Format method: runtime error: invalid memory address or nil pointer dereference))
    .description("string")
    .destinations(%!v(PANIC=Format method: runtime error: invalid memory address or nil pointer dereference))
    .kind("string")
    .location("string")
    .tags(%!v(PANIC=Format method: runtime error: invalid memory address or nil pointer dereference))
    .build());
data_collection_rule_resource = azure_native.insights.DataCollectionRule("dataCollectionRuleResource",
    resource_group_name=string,
    data_collection_rule_name=string,
    data_flows=[{
        destinations: [string],
        streams: [string],
    }],
    data_sources={
        extensions: [{
            extensionName: string,
            extensionSettings: any,
            inputDataSources: [string],
            name: string,
            streams: [string],
        }],
        performanceCounters: [{
            counterSpecifiers: [string],
            name: string,
            samplingFrequencyInSeconds: 0,
            streams: [string],
        }],
        syslog: [{
            facilityNames: [string],
            logLevels: [string],
            name: string,
            streams: [string],
        }],
        windowsEventLogs: [{
            name: string,
            streams: [string],
            xPathQueries: [string],
        }],
    },
    description=string,
    destinations={
        azureMonitorMetrics: {
            name: string,
        },
        logAnalytics: [{
            name: string,
            workspaceResourceId: string,
        }],
    },
    kind=string,
    location=string,
    tags={
        string: string,
    })
const dataCollectionRuleResource = new azure_native.insights.DataCollectionRule("dataCollectionRuleResource", {
    resourceGroupName: "string",
    dataCollectionRuleName: "string",
    dataFlows: [{
        destinations: ["string"],
        streams: ["string"],
    }],
    dataSources: {
        extensions: [{
            extensionName: "string",
            extensionSettings: "any",
            inputDataSources: ["string"],
            name: "string",
            streams: ["string"],
        }],
        performanceCounters: [{
            counterSpecifiers: ["string"],
            name: "string",
            samplingFrequencyInSeconds: 0,
            streams: ["string"],
        }],
        syslog: [{
            facilityNames: ["string"],
            logLevels: ["string"],
            name: "string",
            streams: ["string"],
        }],
        windowsEventLogs: [{
            name: "string",
            streams: ["string"],
            xPathQueries: ["string"],
        }],
    },
    description: "string",
    destinations: {
        azureMonitorMetrics: {
            name: "string",
        },
        logAnalytics: [{
            name: "string",
            workspaceResourceId: "string",
        }],
    },
    kind: "string",
    location: "string",
    tags: {
        string: "string",
    },
});
type: azure-native:insights:DataCollectionRule
properties:
    dataCollectionRuleName: string
    dataFlows:
        - destinations:
            - string
          streams:
            - string
    dataSources:
        extensions:
            - extensionName: string
              extensionSettings: any
              inputDataSources:
                - string
              name: string
              streams:
                - string
        performanceCounters:
            - counterSpecifiers:
                - string
              name: string
              samplingFrequencyInSeconds: 0
              streams:
                - string
        syslog:
            - facilityNames:
                - string
              logLevels:
                - string
              name: string
              streams:
                - string
        windowsEventLogs:
            - name: string
              streams:
                - string
              xPathQueries:
                - string
    description: string
    destinations:
        azureMonitorMetrics:
            name: string
        logAnalytics:
            - name: string
              workspaceResourceId: string
    kind: string
    location: string
    resourceGroupName: string
    tags:
        string: string
DataCollectionRule Resource Properties
To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.
Inputs
In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.
The DataCollectionRule resource accepts the following input properties:
- ResourceGroup stringName 
- The name of the resource group. The name is case insensitive.
- DataCollection stringRule Name 
- The name of the data collection rule. The name is case insensitive.
- DataFlows List<Pulumi.Azure Native. Insights. Inputs. Data Flow> 
- The specification of data flows.
- DataSources Pulumi.Azure Native. Insights. Inputs. Data Collection Rule Data Sources 
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- Description string
- Description of the data collection rule.
- Destinations
Pulumi.Azure Native. Insights. Inputs. Data Collection Rule Destinations 
- The specification of destinations.
- Kind
string | Pulumi.Azure Native. Insights. Known Data Collection Rule Resource Kind 
- The kind of the resource.
- Location string
- The geo-location where the resource lives.
- Dictionary<string, string>
- Resource tags.
- ResourceGroup stringName 
- The name of the resource group. The name is case insensitive.
- DataCollection stringRule Name 
- The name of the data collection rule. The name is case insensitive.
- DataFlows []DataFlow Args 
- The specification of data flows.
- DataSources DataCollection Rule Data Sources Args 
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- Description string
- Description of the data collection rule.
- Destinations
DataCollection Rule Destinations Args 
- The specification of destinations.
- Kind
string | KnownData Collection Rule Resource Kind 
- The kind of the resource.
- Location string
- The geo-location where the resource lives.
- map[string]string
- Resource tags.
- resourceGroup StringName 
- The name of the resource group. The name is case insensitive.
- dataCollection StringRule Name 
- The name of the data collection rule. The name is case insensitive.
- dataFlows List<DataFlow> 
- The specification of data flows.
- dataSources DataCollection Rule Data Sources 
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- description String
- Description of the data collection rule.
- destinations
DataCollection Rule Destinations 
- The specification of destinations.
- kind
String | KnownData Collection Rule Resource Kind 
- The kind of the resource.
- location String
- The geo-location where the resource lives.
- Map<String,String>
- Resource tags.
- resourceGroup stringName 
- The name of the resource group. The name is case insensitive.
- dataCollection stringRule Name 
- The name of the data collection rule. The name is case insensitive.
- dataFlows DataFlow[] 
- The specification of data flows.
- dataSources DataCollection Rule Data Sources 
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- description string
- Description of the data collection rule.
- destinations
DataCollection Rule Destinations 
- The specification of destinations.
- kind
string | KnownData Collection Rule Resource Kind 
- The kind of the resource.
- location string
- The geo-location where the resource lives.
- {[key: string]: string}
- Resource tags.
- resource_group_ strname 
- The name of the resource group. The name is case insensitive.
- data_collection_ strrule_ name 
- The name of the data collection rule. The name is case insensitive.
- data_flows Sequence[DataFlow Args] 
- The specification of data flows.
- data_sources DataCollection Rule Data Sources Args 
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- description str
- Description of the data collection rule.
- destinations
DataCollection Rule Destinations Args 
- The specification of destinations.
- kind
str | KnownData Collection Rule Resource Kind 
- The kind of the resource.
- location str
- The geo-location where the resource lives.
- Mapping[str, str]
- Resource tags.
- resourceGroup StringName 
- The name of the resource group. The name is case insensitive.
- dataCollection StringRule Name 
- The name of the data collection rule. The name is case insensitive.
- dataFlows List<Property Map>
- The specification of data flows.
- dataSources Property Map
- The specification of data sources. This property is optional and can be omitted if the rule is meant to be used via direct calls to the provisioned endpoint.
- description String
- Description of the data collection rule.
- destinations Property Map
- The specification of destinations.
- kind String | "Linux" | "Windows"
- The kind of the resource.
- location String
- The geo-location where the resource lives.
- Map<String>
- Resource tags.
Outputs
All input properties are implicitly available as output properties. Additionally, the DataCollectionRule resource produces the following output properties:
- Etag string
- Resource entity tag (ETag).
- Id string
- The provider-assigned unique ID for this managed resource.
- ImmutableId string
- The immutable ID of this data collection rule. This property is READ-ONLY.
- Name string
- The name of the resource.
- ProvisioningState string
- The resource provisioning state.
- Type string
- The type of the resource.
- Etag string
- Resource entity tag (ETag).
- Id string
- The provider-assigned unique ID for this managed resource.
- ImmutableId string
- The immutable ID of this data collection rule. This property is READ-ONLY.
- Name string
- The name of the resource.
- ProvisioningState string
- The resource provisioning state.
- Type string
- The type of the resource.
- etag String
- Resource entity tag (ETag).
- id String
- The provider-assigned unique ID for this managed resource.
- immutableId String
- The immutable ID of this data collection rule. This property is READ-ONLY.
- name String
- The name of the resource.
- provisioningState String
- The resource provisioning state.
- type String
- The type of the resource.
- etag string
- Resource entity tag (ETag).
- id string
- The provider-assigned unique ID for this managed resource.
- immutableId string
- The immutable ID of this data collection rule. This property is READ-ONLY.
- name string
- The name of the resource.
- provisioningState string
- The resource provisioning state.
- type string
- The type of the resource.
- etag str
- Resource entity tag (ETag).
- id str
- The provider-assigned unique ID for this managed resource.
- immutable_id str
- The immutable ID of this data collection rule. This property is READ-ONLY.
- name str
- The name of the resource.
- provisioning_state str
- The resource provisioning state.
- type str
- The type of the resource.
- etag String
- Resource entity tag (ETag).
- id String
- The provider-assigned unique ID for this managed resource.
- immutableId String
- The immutable ID of this data collection rule. This property is READ-ONLY.
- name String
- The name of the resource.
- provisioningState String
- The resource provisioning state.
- type String
- The type of the resource.
Supporting Types
DataCollectionRuleDataSources, DataCollectionRuleDataSourcesArgs          
- Extensions
List<Pulumi.Azure Native. Insights. Inputs. Extension Data Source> 
- The list of Azure VM extension data source configurations.
- PerformanceCounters List<Pulumi.Azure Native. Insights. Inputs. Perf Counter Data Source> 
- The list of performance counter data source configurations.
- Syslog
List<Pulumi.Azure Native. Insights. Inputs. Syslog Data Source> 
- The list of Syslog data source configurations.
- WindowsEvent List<Pulumi.Logs Azure Native. Insights. Inputs. Windows Event Log Data Source> 
- The list of Windows Event Log data source configurations.
- Extensions
[]ExtensionData Source 
- The list of Azure VM extension data source configurations.
- PerformanceCounters []PerfCounter Data Source 
- The list of performance counter data source configurations.
- Syslog
[]SyslogData Source 
- The list of Syslog data source configurations.
- WindowsEvent []WindowsLogs Event Log Data Source 
- The list of Windows Event Log data source configurations.
- extensions
List<ExtensionData Source> 
- The list of Azure VM extension data source configurations.
- performanceCounters List<PerfCounter Data Source> 
- The list of performance counter data source configurations.
- syslog
List<SyslogData Source> 
- The list of Syslog data source configurations.
- windowsEvent List<WindowsLogs Event Log Data Source> 
- The list of Windows Event Log data source configurations.
- extensions
ExtensionData Source[] 
- The list of Azure VM extension data source configurations.
- performanceCounters PerfCounter Data Source[] 
- The list of performance counter data source configurations.
- syslog
SyslogData Source[] 
- The list of Syslog data source configurations.
- windowsEvent WindowsLogs Event Log Data Source[] 
- The list of Windows Event Log data source configurations.
- extensions
Sequence[ExtensionData Source] 
- The list of Azure VM extension data source configurations.
- performance_counters Sequence[PerfCounter Data Source] 
- The list of performance counter data source configurations.
- syslog
Sequence[SyslogData Source] 
- The list of Syslog data source configurations.
- windows_event_ Sequence[Windowslogs Event Log Data Source] 
- The list of Windows Event Log data source configurations.
- extensions List<Property Map>
- The list of Azure VM extension data source configurations.
- performanceCounters List<Property Map>
- The list of performance counter data source configurations.
- syslog List<Property Map>
- The list of Syslog data source configurations.
- windowsEvent List<Property Map>Logs 
- The list of Windows Event Log data source configurations.
DataCollectionRuleDestinations, DataCollectionRuleDestinationsArgs        
- AzureMonitor Pulumi.Metrics Azure Native. Insights. Inputs. Destinations Spec Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- LogAnalytics List<Pulumi.Azure Native. Insights. Inputs. Log Analytics Destination> 
- List of Log Analytics destinations.
- AzureMonitor DestinationsMetrics Spec Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- LogAnalytics []LogAnalytics Destination 
- List of Log Analytics destinations.
- azureMonitor DestinationsMetrics Spec Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- logAnalytics List<LogAnalytics Destination> 
- List of Log Analytics destinations.
- azureMonitor DestinationsMetrics Spec Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- logAnalytics LogAnalytics Destination[] 
- List of Log Analytics destinations.
- azure_monitor_ Destinationsmetrics Spec Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- log_analytics Sequence[LogAnalytics Destination] 
- List of Log Analytics destinations.
- azureMonitor Property MapMetrics 
- Azure Monitor Metrics destination.
- logAnalytics List<Property Map>
- List of Log Analytics destinations.
DataCollectionRuleResponseDataSources, DataCollectionRuleResponseDataSourcesArgs            
- Extensions
List<Pulumi.Azure Native. Insights. Inputs. Extension Data Source Response> 
- The list of Azure VM extension data source configurations.
- PerformanceCounters List<Pulumi.Azure Native. Insights. Inputs. Perf Counter Data Source Response> 
- The list of performance counter data source configurations.
- Syslog
List<Pulumi.Azure Native. Insights. Inputs. Syslog Data Source Response> 
- The list of Syslog data source configurations.
- WindowsEvent List<Pulumi.Logs Azure Native. Insights. Inputs. Windows Event Log Data Source Response> 
- The list of Windows Event Log data source configurations.
- Extensions
[]ExtensionData Source Response 
- The list of Azure VM extension data source configurations.
- PerformanceCounters []PerfCounter Data Source Response 
- The list of performance counter data source configurations.
- Syslog
[]SyslogData Source Response 
- The list of Syslog data source configurations.
- WindowsEvent []WindowsLogs Event Log Data Source Response 
- The list of Windows Event Log data source configurations.
- extensions
List<ExtensionData Source Response> 
- The list of Azure VM extension data source configurations.
- performanceCounters List<PerfCounter Data Source Response> 
- The list of performance counter data source configurations.
- syslog
List<SyslogData Source Response> 
- The list of Syslog data source configurations.
- windowsEvent List<WindowsLogs Event Log Data Source Response> 
- The list of Windows Event Log data source configurations.
- extensions
ExtensionData Source Response[] 
- The list of Azure VM extension data source configurations.
- performanceCounters PerfCounter Data Source Response[] 
- The list of performance counter data source configurations.
- syslog
SyslogData Source Response[] 
- The list of Syslog data source configurations.
- windowsEvent WindowsLogs Event Log Data Source Response[] 
- The list of Windows Event Log data source configurations.
- extensions
Sequence[ExtensionData Source Response] 
- The list of Azure VM extension data source configurations.
- performance_counters Sequence[PerfCounter Data Source Response] 
- The list of performance counter data source configurations.
- syslog
Sequence[SyslogData Source Response] 
- The list of Syslog data source configurations.
- windows_event_ Sequence[Windowslogs Event Log Data Source Response] 
- The list of Windows Event Log data source configurations.
- extensions List<Property Map>
- The list of Azure VM extension data source configurations.
- performanceCounters List<Property Map>
- The list of performance counter data source configurations.
- syslog List<Property Map>
- The list of Syslog data source configurations.
- windowsEvent List<Property Map>Logs 
- The list of Windows Event Log data source configurations.
DataCollectionRuleResponseDestinations, DataCollectionRuleResponseDestinationsArgs          
- AzureMonitor Pulumi.Metrics Azure Native. Insights. Inputs. Destinations Spec Response Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- LogAnalytics List<Pulumi.Azure Native. Insights. Inputs. Log Analytics Destination Response> 
- List of Log Analytics destinations.
- AzureMonitor DestinationsMetrics Spec Response Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- LogAnalytics []LogAnalytics Destination Response 
- List of Log Analytics destinations.
- azureMonitor DestinationsMetrics Spec Response Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- logAnalytics List<LogAnalytics Destination Response> 
- List of Log Analytics destinations.
- azureMonitor DestinationsMetrics Spec Response Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- logAnalytics LogAnalytics Destination Response[] 
- List of Log Analytics destinations.
- azure_monitor_ Destinationsmetrics Spec Response Azure Monitor Metrics 
- Azure Monitor Metrics destination.
- log_analytics Sequence[LogAnalytics Destination Response] 
- List of Log Analytics destinations.
- azureMonitor Property MapMetrics 
- Azure Monitor Metrics destination.
- logAnalytics List<Property Map>
- List of Log Analytics destinations.
DataFlow, DataFlowArgs    
- Destinations List<string>
- List of destinations for this data flow.
- Streams
List<Union<string, Pulumi.Azure Native. Insights. Known Data Flow Streams>> 
- List of streams for this data flow.
- Destinations []string
- List of destinations for this data flow.
- Streams []string
- List of streams for this data flow.
- destinations List<String>
- List of destinations for this data flow.
- streams
List<Either<String,KnownData Flow Streams>> 
- List of streams for this data flow.
- destinations string[]
- List of destinations for this data flow.
- streams
(string | KnownData Flow Streams)[] 
- List of streams for this data flow.
- destinations Sequence[str]
- List of destinations for this data flow.
- streams
Sequence[Union[str, KnownData Flow Streams]] 
- List of streams for this data flow.
- destinations List<String>
- List of destinations for this data flow.
- streams
List<String | "Microsoft-Event" | "Microsoft-InsightsMetrics" | "Microsoft-Perf" | "Microsoft-Syslog" | "Microsoft-Windows Event"> 
- List of streams for this data flow.
DataFlowResponse, DataFlowResponseArgs      
- Destinations List<string>
- List of destinations for this data flow.
- Streams List<string>
- List of streams for this data flow.
- Destinations []string
- List of destinations for this data flow.
- Streams []string
- List of streams for this data flow.
- destinations List<String>
- List of destinations for this data flow.
- streams List<String>
- List of streams for this data flow.
- destinations string[]
- List of destinations for this data flow.
- streams string[]
- List of streams for this data flow.
- destinations Sequence[str]
- List of destinations for this data flow.
- streams Sequence[str]
- List of streams for this data flow.
- destinations List<String>
- List of destinations for this data flow.
- streams List<String>
- List of streams for this data flow.
DestinationsSpecAzureMonitorMetrics, DestinationsSpecAzureMonitorMetricsArgs          
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name str
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
DestinationsSpecResponseAzureMonitorMetrics, DestinationsSpecResponseAzureMonitorMetricsArgs            
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name str
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
ExtensionDataSource, ExtensionDataSourceArgs      
- ExtensionName string
- The name of the VM extension.
- ExtensionSettings object
- The extension settings. The format is specific for particular extension.
- InputData List<string>Sources 
- The list of data sources this extension needs data from.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams
List<Union<string, Pulumi.Azure Native. Insights. Known Extension Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- ExtensionName string
- The name of the VM extension.
- ExtensionSettings interface{}
- The extension settings. The format is specific for particular extension.
- InputData []stringSources 
- The list of data sources this extension needs data from.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName String
- The name of the VM extension.
- extensionSettings Object
- The extension settings. The format is specific for particular extension.
- inputData List<String>Sources 
- The list of data sources this extension needs data from.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
List<Either<String,KnownExtension Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName string
- The name of the VM extension.
- extensionSettings any
- The extension settings. The format is specific for particular extension.
- inputData string[]Sources 
- The list of data sources this extension needs data from.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
(string | KnownExtension Data Source Streams)[] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extension_name str
- The name of the VM extension.
- extension_settings Any
- The extension settings. The format is specific for particular extension.
- input_data_ Sequence[str]sources 
- The list of data sources this extension needs data from.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
Sequence[Union[str, KnownExtension Data Source Streams]] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName String
- The name of the VM extension.
- extensionSettings Any
- The extension settings. The format is specific for particular extension.
- inputData List<String>Sources 
- The list of data sources this extension needs data from.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
List<String | "Microsoft-Event" | "Microsoft-InsightsMetrics" | "Microsoft-Perf" | "Microsoft-Syslog" | "Microsoft-Windows Event"> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
ExtensionDataSourceResponse, ExtensionDataSourceResponseArgs        
- ExtensionName string
- The name of the VM extension.
- ExtensionSettings object
- The extension settings. The format is specific for particular extension.
- InputData List<string>Sources 
- The list of data sources this extension needs data from.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams List<string>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- ExtensionName string
- The name of the VM extension.
- ExtensionSettings interface{}
- The extension settings. The format is specific for particular extension.
- InputData []stringSources 
- The list of data sources this extension needs data from.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName String
- The name of the VM extension.
- extensionSettings Object
- The extension settings. The format is specific for particular extension.
- inputData List<String>Sources 
- The list of data sources this extension needs data from.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName string
- The name of the VM extension.
- extensionSettings any
- The extension settings. The format is specific for particular extension.
- inputData string[]Sources 
- The list of data sources this extension needs data from.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams string[]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extension_name str
- The name of the VM extension.
- extension_settings Any
- The extension settings. The format is specific for particular extension.
- input_data_ Sequence[str]sources 
- The list of data sources this extension needs data from.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams Sequence[str]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- extensionName String
- The name of the VM extension.
- extensionSettings Any
- The extension settings. The format is specific for particular extension.
- inputData List<String>Sources 
- The list of data sources this extension needs data from.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
KnownDataCollectionRuleResourceKind, KnownDataCollectionRuleResourceKindArgs            
- Linux
- Linux
- Windows
- Windows
- KnownData Collection Rule Resource Kind Linux 
- Linux
- KnownData Collection Rule Resource Kind Windows 
- Windows
- Linux
- Linux
- Windows
- Windows
- Linux
- Linux
- Windows
- Windows
- LINUX
- Linux
- WINDOWS
- Windows
- "Linux"
- Linux
- "Windows"
- Windows
KnownDataFlowStreams, KnownDataFlowStreamsArgs        
- Microsoft_Event
- Microsoft-Event
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_Syslog
- Microsoft-Syslog
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- KnownData Flow Streams_Microsoft_Event 
- Microsoft-Event
- KnownData Flow Streams_Microsoft_Insights Metrics 
- Microsoft-InsightsMetrics
- KnownData Flow Streams_Microsoft_Perf 
- Microsoft-Perf
- KnownData Flow Streams_Microsoft_Syslog 
- Microsoft-Syslog
- KnownData Flow Streams_Microsoft_Windows Event 
- Microsoft-WindowsEvent
- MicrosoftEvent 
- Microsoft-Event
- MicrosoftInsights Metrics 
- Microsoft-InsightsMetrics
- MicrosoftPerf 
- Microsoft-Perf
- MicrosoftSyslog 
- Microsoft-Syslog
- MicrosoftWindows Event 
- Microsoft-WindowsEvent
- Microsoft_Event
- Microsoft-Event
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_Syslog
- Microsoft-Syslog
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- MICROSOFT_EVENT
- Microsoft-Event
- MICROSOFT_INSIGHTS_METRICS
- Microsoft-InsightsMetrics
- MICROSOFT_PERF
- Microsoft-Perf
- MICROSOFT_SYSLOG
- Microsoft-Syslog
- MICROSOFT_WINDOWS_EVENT
- Microsoft-WindowsEvent
- "Microsoft-Event"
- Microsoft-Event
- "Microsoft-InsightsMetrics" 
- Microsoft-InsightsMetrics
- "Microsoft-Perf"
- Microsoft-Perf
- "Microsoft-Syslog"
- Microsoft-Syslog
- "Microsoft-WindowsEvent" 
- Microsoft-WindowsEvent
KnownExtensionDataSourceStreams, KnownExtensionDataSourceStreamsArgs          
- Microsoft_Event
- Microsoft-Event
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_Syslog
- Microsoft-Syslog
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- KnownExtension Data Source Streams_Microsoft_Event 
- Microsoft-Event
- KnownExtension Data Source Streams_Microsoft_Insights Metrics 
- Microsoft-InsightsMetrics
- KnownExtension Data Source Streams_Microsoft_Perf 
- Microsoft-Perf
- KnownExtension Data Source Streams_Microsoft_Syslog 
- Microsoft-Syslog
- KnownExtension Data Source Streams_Microsoft_Windows Event 
- Microsoft-WindowsEvent
- MicrosoftEvent 
- Microsoft-Event
- MicrosoftInsights Metrics 
- Microsoft-InsightsMetrics
- MicrosoftPerf 
- Microsoft-Perf
- MicrosoftSyslog 
- Microsoft-Syslog
- MicrosoftWindows Event 
- Microsoft-WindowsEvent
- Microsoft_Event
- Microsoft-Event
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_Syslog
- Microsoft-Syslog
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- MICROSOFT_EVENT
- Microsoft-Event
- MICROSOFT_INSIGHTS_METRICS
- Microsoft-InsightsMetrics
- MICROSOFT_PERF
- Microsoft-Perf
- MICROSOFT_SYSLOG
- Microsoft-Syslog
- MICROSOFT_WINDOWS_EVENT
- Microsoft-WindowsEvent
- "Microsoft-Event"
- Microsoft-Event
- "Microsoft-InsightsMetrics" 
- Microsoft-InsightsMetrics
- "Microsoft-Perf"
- Microsoft-Perf
- "Microsoft-Syslog"
- Microsoft-Syslog
- "Microsoft-WindowsEvent" 
- Microsoft-WindowsEvent
KnownPerfCounterDataSourceStreams, KnownPerfCounterDataSourceStreamsArgs            
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- KnownPerf Counter Data Source Streams_Microsoft_Perf 
- Microsoft-Perf
- KnownPerf Counter Data Source Streams_Microsoft_Insights Metrics 
- Microsoft-InsightsMetrics
- MicrosoftPerf 
- Microsoft-Perf
- MicrosoftInsights Metrics 
- Microsoft-InsightsMetrics
- Microsoft_Perf
- Microsoft-Perf
- Microsoft_InsightsMetrics 
- Microsoft-InsightsMetrics
- MICROSOFT_PERF
- Microsoft-Perf
- MICROSOFT_INSIGHTS_METRICS
- Microsoft-InsightsMetrics
- "Microsoft-Perf"
- Microsoft-Perf
- "Microsoft-InsightsMetrics" 
- Microsoft-InsightsMetrics
KnownSyslogDataSourceFacilityNames, KnownSyslogDataSourceFacilityNamesArgs            
- Auth
- auth
- Authpriv
- authpriv
- Cron
- cron
- Daemon
- daemon
- Kern
- kern
- Lpr
- lpr
- Mark
- mark
- News
- news
- Syslog
- syslog
- User
- user
- Uucp
- uucp
- Local0
- local0
- Local1
- local1
- Local2
- local2
- Local3
- local3
- Local4
- local4
- Local5
- local5
- Local6
- local6
- Local7
- local7
- Asterisk
- *
- KnownSyslog Data Source Facility Names Auth 
- auth
- KnownSyslog Data Source Facility Names Authpriv 
- authpriv
- KnownSyslog Data Source Facility Names Cron 
- cron
- KnownSyslog Data Source Facility Names Daemon 
- daemon
- KnownSyslog Data Source Facility Names Kern 
- kern
- KnownSyslog Data Source Facility Names Lpr 
- lpr
- KnownSyslog Data Source Facility Names Mail 
- KnownSyslog Data Source Facility Names Mark 
- mark
- KnownSyslog Data Source Facility Names News 
- news
- KnownSyslog Data Source Facility Names Syslog 
- syslog
- KnownSyslog Data Source Facility Names User 
- user
- KnownSyslog Data Source Facility Names Uucp 
- uucp
- KnownSyslog Data Source Facility Names Local0 
- local0
- KnownSyslog Data Source Facility Names Local1 
- local1
- KnownSyslog Data Source Facility Names Local2 
- local2
- KnownSyslog Data Source Facility Names Local3 
- local3
- KnownSyslog Data Source Facility Names Local4 
- local4
- KnownSyslog Data Source Facility Names Local5 
- local5
- KnownSyslog Data Source Facility Names Local6 
- local6
- KnownSyslog Data Source Facility Names Local7 
- local7
- KnownSyslog Data Source Facility Names Asterisk 
- *
- Auth
- auth
- Authpriv
- authpriv
- Cron
- cron
- Daemon
- daemon
- Kern
- kern
- Lpr
- lpr
- Mark
- mark
- News
- news
- Syslog
- syslog
- User
- user
- Uucp
- uucp
- Local0
- local0
- Local1
- local1
- Local2
- local2
- Local3
- local3
- Local4
- local4
- Local5
- local5
- Local6
- local6
- Local7
- local7
- Asterisk
- *
- Auth
- auth
- Authpriv
- authpriv
- Cron
- cron
- Daemon
- daemon
- Kern
- kern
- Lpr
- lpr
- Mark
- mark
- News
- news
- Syslog
- syslog
- User
- user
- Uucp
- uucp
- Local0
- local0
- Local1
- local1
- Local2
- local2
- Local3
- local3
- Local4
- local4
- Local5
- local5
- Local6
- local6
- Local7
- local7
- Asterisk
- *
- AUTH
- auth
- AUTHPRIV
- authpriv
- CRON
- cron
- DAEMON
- daemon
- KERN
- kern
- LPR
- lpr
- MARK
- mark
- NEWS
- news
- SYSLOG
- syslog
- USER
- user
- UUCP
- uucp
- LOCAL0
- local0
- LOCAL1
- local1
- LOCAL2
- local2
- LOCAL3
- local3
- LOCAL4
- local4
- LOCAL5
- local5
- LOCAL6
- local6
- LOCAL7
- local7
- ASTERISK
- *
- "auth"
- auth
- "authpriv"
- authpriv
- "cron"
- cron
- "daemon"
- daemon
- "kern"
- kern
- "lpr"
- lpr
- "mail"
- "mark"
- mark
- "news"
- news
- "syslog"
- syslog
- "user"
- user
- "uucp"
- uucp
- "local0"
- local0
- "local1"
- local1
- "local2"
- local2
- "local3"
- local3
- "local4"
- local4
- "local5"
- local5
- "local6"
- local6
- "local7"
- local7
- "*"
- *
KnownSyslogDataSourceLogLevels, KnownSyslogDataSourceLogLevelsArgs            
- Debug
- Debug
- Info
- Info
- Notice
- Notice
- Warning
- Warning
- Error
- Error
- Critical
- Critical
- Alert
- Alert
- Emergency
- Emergency
- Asterisk
- *
- KnownSyslog Data Source Log Levels Debug 
- Debug
- KnownSyslog Data Source Log Levels Info 
- Info
- KnownSyslog Data Source Log Levels Notice 
- Notice
- KnownSyslog Data Source Log Levels Warning 
- Warning
- KnownSyslog Data Source Log Levels Error 
- Error
- KnownSyslog Data Source Log Levels Critical 
- Critical
- KnownSyslog Data Source Log Levels Alert 
- Alert
- KnownSyslog Data Source Log Levels Emergency 
- Emergency
- KnownSyslog Data Source Log Levels Asterisk 
- *
- Debug
- Debug
- Info
- Info
- Notice
- Notice
- Warning
- Warning
- Error
- Error
- Critical
- Critical
- Alert
- Alert
- Emergency
- Emergency
- Asterisk
- *
- Debug
- Debug
- Info
- Info
- Notice
- Notice
- Warning
- Warning
- Error
- Error
- Critical
- Critical
- Alert
- Alert
- Emergency
- Emergency
- Asterisk
- *
- DEBUG
- Debug
- INFO
- Info
- NOTICE
- Notice
- WARNING
- Warning
- ERROR
- Error
- CRITICAL
- Critical
- ALERT
- Alert
- EMERGENCY
- Emergency
- ASTERISK
- *
- "Debug"
- Debug
- "Info"
- Info
- "Notice"
- Notice
- "Warning"
- Warning
- "Error"
- Error
- "Critical"
- Critical
- "Alert"
- Alert
- "Emergency"
- Emergency
- "*"
- *
KnownSyslogDataSourceStreams, KnownSyslogDataSourceStreamsArgs          
- Microsoft_Syslog
- Microsoft-Syslog
- KnownSyslog Data Source Streams_Microsoft_Syslog 
- Microsoft-Syslog
- MicrosoftSyslog 
- Microsoft-Syslog
- Microsoft_Syslog
- Microsoft-Syslog
- MICROSOFT_SYSLOG
- Microsoft-Syslog
- "Microsoft-Syslog"
- Microsoft-Syslog
KnownWindowsEventLogDataSourceStreams, KnownWindowsEventLogDataSourceStreamsArgs              
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- Microsoft_Event
- Microsoft-Event
- KnownWindows Event Log Data Source Streams_Microsoft_Windows Event 
- Microsoft-WindowsEvent
- KnownWindows Event Log Data Source Streams_Microsoft_Event 
- Microsoft-Event
- MicrosoftWindows Event 
- Microsoft-WindowsEvent
- MicrosoftEvent 
- Microsoft-Event
- Microsoft_WindowsEvent 
- Microsoft-WindowsEvent
- Microsoft_Event
- Microsoft-Event
- MICROSOFT_WINDOWS_EVENT
- Microsoft-WindowsEvent
- MICROSOFT_EVENT
- Microsoft-Event
- "Microsoft-WindowsEvent" 
- Microsoft-WindowsEvent
- "Microsoft-Event"
- Microsoft-Event
LogAnalyticsDestination, LogAnalyticsDestinationArgs      
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- WorkspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- WorkspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource StringId 
- The resource ID of the Log Analytics workspace.
- name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- name str
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspace_resource_ strid 
- The resource ID of the Log Analytics workspace.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource StringId 
- The resource ID of the Log Analytics workspace.
LogAnalyticsDestinationResponse, LogAnalyticsDestinationResponseArgs        
- WorkspaceId string
- The Customer ID of the Log Analytics workspace.
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- WorkspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- WorkspaceId string
- The Customer ID of the Log Analytics workspace.
- Name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- WorkspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- workspaceId String
- The Customer ID of the Log Analytics workspace.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource StringId 
- The resource ID of the Log Analytics workspace.
- workspaceId string
- The Customer ID of the Log Analytics workspace.
- name string
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource stringId 
- The resource ID of the Log Analytics workspace.
- workspace_id str
- The Customer ID of the Log Analytics workspace.
- name str
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspace_resource_ strid 
- The resource ID of the Log Analytics workspace.
- workspaceId String
- The Customer ID of the Log Analytics workspace.
- name String
- A friendly name for the destination. This name should be unique across all destinations (regardless of type) within the data collection rule.
- workspaceResource StringId 
- The resource ID of the Log Analytics workspace.
PerfCounterDataSource, PerfCounterDataSourceArgs        
- CounterSpecifiers List<string>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- SamplingFrequency intIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- Streams
List<Union<string, Pulumi.Azure Native. Insights. Known Perf Counter Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- CounterSpecifiers []string
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- SamplingFrequency intIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers List<String>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency IntegerIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams
List<Either<String,KnownPerf Counter Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers string[]
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency numberIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams
(string | KnownPerf Counter Data Source Streams)[] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counter_specifiers Sequence[str]
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- sampling_frequency_ intin_ seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams
Sequence[Union[str, KnownPerf Counter Data Source Streams]] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers List<String>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency NumberIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams
List<String | "Microsoft-Perf" | "Microsoft-InsightsMetrics"> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
PerfCounterDataSourceResponse, PerfCounterDataSourceResponseArgs          
- CounterSpecifiers List<string>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- SamplingFrequency intIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- Streams List<string>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- CounterSpecifiers []string
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- SamplingFrequency intIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers List<String>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency IntegerIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers string[]
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency numberIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams string[]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counter_specifiers Sequence[str]
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- sampling_frequency_ intin_ seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams Sequence[str]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- counterSpecifiers List<String>
- A list of specifier names of the performance counters you want to collect. Use a wildcard (*) to collect a counter for all instances. To get a list of performance counters on Windows, run the command 'typeperf'.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- samplingFrequency NumberIn Seconds 
- The number of seconds between consecutive counter measurements (samples).
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
SyslogDataSource, SyslogDataSourceArgs      
- FacilityNames List<Union<string, Pulumi.Azure Native. Insights. Known Syslog Data Source Facility Names>> 
- The list of facility names.
- LogLevels List<Union<string, Pulumi.Azure Native. Insights. Known Syslog Data Source Log Levels>> 
- The log levels to collect.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams
List<Union<string, Pulumi.Azure Native. Insights. Known Syslog Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- FacilityNames []string
- The list of facility names.
- LogLevels []string
- The log levels to collect.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames List<Either<String,KnownSyslog Data Source Facility Names>> 
- The list of facility names.
- logLevels List<Either<String,KnownSyslog Data Source Log Levels>> 
- The log levels to collect.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
List<Either<String,KnownSyslog Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames (string | KnownSyslog Data Source Facility Names)[] 
- The list of facility names.
- logLevels (string | KnownSyslog Data Source Log Levels)[] 
- The log levels to collect.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
(string | KnownSyslog Data Source Streams)[] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facility_names Sequence[Union[str, KnownSyslog Data Source Facility Names]] 
- The list of facility names.
- log_levels Sequence[Union[str, KnownSyslog Data Source Log Levels]] 
- The log levels to collect.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
Sequence[Union[str, KnownSyslog Data Source Streams]] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames List<String | "auth" | "authpriv" | "cron" | "daemon" | "kern" | "lpr" | "mail" | "mark" | "news" | "syslog" | "user" | "uucp" | "local0" | "local1" | "local2" | "local3" | "local4" | "local5" | "local6" | "local7" | "*">
- The list of facility names.
- logLevels List<String | "Debug" | "Info" | "Notice" | "Warning" | "Error" | "Critical" | "Alert" | "Emergency" | "*">
- The log levels to collect.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String | "Microsoft-Syslog">
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
SyslogDataSourceResponse, SyslogDataSourceResponseArgs        
- FacilityNames List<string>
- The list of facility names.
- LogLevels List<string>
- The log levels to collect.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams List<string>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- FacilityNames []string
- The list of facility names.
- LogLevels []string
- The log levels to collect.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames List<String>
- The list of facility names.
- logLevels List<String>
- The log levels to collect.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames string[]
- The list of facility names.
- logLevels string[]
- The log levels to collect.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams string[]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facility_names Sequence[str]
- The list of facility names.
- log_levels Sequence[str]
- The log levels to collect.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams Sequence[str]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- facilityNames List<String>
- The list of facility names.
- logLevels List<String>
- The log levels to collect.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
WindowsEventLogDataSource, WindowsEventLogDataSourceArgs          
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams
List<Union<string, Pulumi.Azure Native. Insights. Known Windows Event Log Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- XPathQueries List<string>
- A list of Windows Event Log queries in XPATH format.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- XPathQueries []string
- A list of Windows Event Log queries in XPATH format.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
List<Either<String,KnownWindows Event Log Data Source Streams>> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath List<String>Queries 
- A list of Windows Event Log queries in XPATH format.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
(string | KnownWindows Event Log Data Source Streams)[] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath string[]Queries 
- A list of Windows Event Log queries in XPATH format.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
Sequence[Union[str, KnownWindows Event Log Data Source Streams]] 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- x_path_ Sequence[str]queries 
- A list of Windows Event Log queries in XPATH format.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams
List<String | "Microsoft-WindowsEvent" | "Microsoft-Event"> 
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath List<String>Queries 
- A list of Windows Event Log queries in XPATH format.
WindowsEventLogDataSourceResponse, WindowsEventLogDataSourceResponseArgs            
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams List<string>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- XPathQueries List<string>
- A list of Windows Event Log queries in XPATH format.
- Name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- Streams []string
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- XPathQueries []string
- A list of Windows Event Log queries in XPATH format.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath List<String>Queries 
- A list of Windows Event Log queries in XPATH format.
- name string
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams string[]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath string[]Queries 
- A list of Windows Event Log queries in XPATH format.
- name str
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams Sequence[str]
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- x_path_ Sequence[str]queries 
- A list of Windows Event Log queries in XPATH format.
- name String
- A friendly name for the data source. This name should be unique across all data sources (regardless of type) within the data collection rule.
- streams List<String>
- List of streams that this data source will be sent to. A stream indicates what schema will be used for this data and usually what table in Log Analytics the data will be sent to.
- xPath List<String>Queries 
- A list of Windows Event Log queries in XPATH format.
Import
An existing resource can be imported using its type token, name, and identifier, e.g.
$ pulumi import azure-native:insights:DataCollectionRule myCollectionRule /subscriptions/703362b3-f278-4e4b-9179-c76eaf41ffc2/resourceGroups/myResourceGroup/providers/Microsoft.Insights/dataCollectionRules/myCollectionRule 
To learn more about importing existing cloud resources, see Importing resources.
Package Details
- Repository
- azure-native-v1 pulumi/pulumi-azure-native
- License
- Apache-2.0