Queries for the AZFWNatRule table
For information on using these queries in the Azure portal, see Log Analytics tutorial. For the REST API, see Query.
Connections which were redirected to a client behind the firewall's NAT rules.
AZFWNatRule
| take 100
All decision taken by firewall. Contains hits on network, application and NAT rules, as well as threat intelligence hits and IDPS signature hits.
AZFWNetworkRule
| union AZFWApplicationRule, AZFWNatRule, AZFWThreatIntel, AZFWIdpsSignature
| take 100