# Does anyone have experience of forwarding Syslog events to Azure Sentinel? Is it right that I need an additional log collector to forward the syslog events to Azure Sentinel? ONTAP -> log collector -> Azure Sentinel