Deploy and monitor Azure Key Vault honeytokens with Microsoft Sentinel (Community supported)

The Microsoft Sentinel Deception solution uses honeytokens—decoy keys and secrets planted in Azure Key Vault—to help detect unauthorized access attempts. When an attacker accesses a honeytoken, Microsoft Sentinel triggers an alert so you can respond quickly. This article provides guidance on community support for the honeytokens solution and links to deployment documentation.

Important

The Microsoft Sentinel Deception (Honey Tokens) solution is offered in a community supported model by the Microsoft SIEM & XDR Community. Any support required can be raised on the Microsoft Sentinel GitHub issues page where the Microsoft Sentinel community can assist.

For solution documentation, review the Honeytokens solution GitHub page.

Community support for the Azure Key Vault honeytokens solution

To deploy and monitor Azure Key Vault honeytokens with Microsoft Sentinel, review the Honeytokens solution GitHub page.

Next steps

For more information, see: