Configure
| Field | Value |
|---|---|
| Type | Azure Monitor |
| Workspace ID | From Azure Portal → Log Analytics workspace → Agents |
| Shared Key | Primary or secondary key from the same Agents page |
| Log Type | Custom log table name. Default PolicyGatewayAudit |
https://<workspace_id>.ods.opinsights.azure.com/api/logs.
Event shape
Events arrive as rows in the custom log table (suffixed_CL by Log Analytics):
_s for strings, _b for booleans, _d for numbers, _t for datetimes.)
