diff --git a/defender-xdr/advanced-hunting-aadspnsignineventsbeta-table.md b/defender-xdr/advanced-hunting-aadspnsignineventsbeta-table.md index a415cb70ca..82dc8f0fcf 100644 --- a/defender-xdr/advanced-hunting-aadspnsignineventsbeta-table.md +++ b/defender-xdr/advanced-hunting-aadspnsignineventsbeta-table.md @@ -48,27 +48,27 @@ reference](/windows/security/threat-protection/microsoft-defender-atp/advanced-h -| Column name | Data type | Description | -| ----- | ----- | ---- | -| `Timestamp` | datetime | Date and time when the record was generated | -| `Application` | string | Application that performed the recorded action | -| `ApplicationId` | string | Unique identifier for the application | -| `IsManagedIdentity` | boolean | Indicates whether the sign-in was initiated by a managed identity | -| `ErrorCode` | int | Contains the error code if a sign-in error occurs. To find a description of a specific error code, visit . | -| `CorrelationId` | string | Unique identifier of the sign-in event | -| `ServicePrincipalName` | string | Name of the service principal that initiated the sign-in | -| `ServicePrincipalId` | string | Unique identifier of the service principal that initiated the sign-in | -| `ResourceDisplayName` | string | Display name of the resource accessed | -| `ResourceId` | string | Unique identifier of the resource accessed | -| `ResourceTenantId` | string | Unique identifier of the tenant of the resource accessed | -| `IPAddress` | string | IP address assigned to the endpoint and used during related network communications | -| `Country` | string | Two-letter code indicating the country where the client IP address is geolocated | -| `State` | string | State where the sign-in occurred, if available | -| `City` | string | City where the account user is located | -| `Latitude` | string | The north to south coordinates of the sign-in location | -| `Longitude` | string | The east to west coordinates of the sign-in location | -| `RequestId` | string | Unique identifier of the request | -|`ReportId` | string | Unique identifier for the event |  +| Column name | Data type | Description | +|-----|-----|-----| +| `Timestamp` | datetime | Date and time when the record was generated | +| `Application` | string | Application that performed the recorded action | +| `ApplicationId` | string | Unique identifier for the application | +| `IsManagedIdentity` | boolean | Indicates whether the sign-in was initiated by a managed identity | +| `ErrorCode` | int | Contains the error code if a sign-in error occurs. To find a description of a specific error code, visit . | +| `CorrelationId` | string | Unique identifier of the sign-in event | +| `ServicePrincipalName` | string | Name of the service principal that initiated the sign-in | +| `ServicePrincipalId` | string | Unique identifier of the service principal that initiated the sign-in | +| `ResourceDisplayName` | string | Display name of the resource accessed | +| `ResourceId` | string | Unique identifier of the resource accessed | +| `ResourceTenantId` | string | Unique identifier of the tenant of the resource accessed | +| `IPAddress` | string | IP address assigned to the endpoint and used during related network communications | +| `Country` | string | Two-letter code indicating the country where the client IP address is geolocated | +| `State` | string | State where the sign-in occurred, if available | +| `City` | string | City where the account user is located | +| `Latitude` | string | The north to south coordinates of the sign-in location | +| `Longitude` | string | The east to west coordinates of the sign-in location | +| `RequestId` | string | Unique identifier of the request | +|`ReportId` | string | Unique identifier for the event |   @@ -80,4 +80,4 @@ reference](/windows/security/threat-protection/microsoft-defender-atp/advanced-h - [Learn the query language](/windows/security/threat-protection/microsoft-defender-atp/advanced-hunting-query-language) - [Understand the - schema](/windows/security/threat-protection/microsoft-defender-atp/advanced-hunting-schema-reference) \ No newline at end of file + schema](/windows/security/threat-protection/microsoft-defender-atp/advanced-hunting-schema-reference)