Actions79
- Admin Actions
- Alert Summary Actions
- Backup Health Summary Actions
- Consumption Billing Analyzer Actions
- Customer Actions
- Event Actions
- Report - Cyber Resilience Actions
- Report - Endpoint Actions
- Report - Enterprise Workloads Actions
- Get Alert History Report
- Get Backup Activity Report
- Get DR Failback Activity Report
- Get DR Failover Activity Report
- Get DR Replication Activity Report
- Get Resource Status Report
- Get Storage Consumption by BackupSets Report
- Get Google Alerts Report
- Get Google License Usage Report
- Get Google Preserved Users Datasources Report
- Get Google Shared Drive Backup Activity Report
- Get Google Shared Drive Restore Activity Report
- Get Google Storage Consumption Report
- Get Google User Count and Status Report
- Get Google User Last Backup Status Report
- Get Google User Provisioning Report
- Get Google User Restore Activity Report
- Get Google User Workload Report
- Get M365 Alerts Report
- Get M365 Groups Backup Activity Report
- Get M365 Groups Discovery Report
- Get M365 License Usage Report
- Get M365 Preserved Users Datasources Report
- Get M365 Public Folder Backup Activity Report
- Get M365 SharePoint Backup Activity Report
- Get M365 SharePoint Site Discovery Report
- Get M365 Storage Consumption Report
- Get M365 Teams Backup Activity Report
- Get M365 Teams Discovery Report
- Get M365 User Count and Status Report
- Get M365 User Last Backup Status Report
- Get M365 User Provisioning Report
- Get M365 User Restore Activity Report
- Get M365 User Workload Report
- Report - Usage Actions
- Service Plan Actions
- Storage Region Actions
- Task Actions
- Tenant Actions
- Tenant Config - Enterprise Workloads Actions
- Tenant Config - inSync Actions
Report - Enterprise Workloads → Get M365 Alerts Report
AI-generatedOverview
This node interacts with the Druva MSP API to retrieve Microsoft 365 Alerts Reports under the 'Report - Enterprise Workloads' resource. It is useful for MSPs or administrators who want to monitor and analyze security alerts and incidents within their Microsoft 365 environment. The node supports filtering by date ranges (specific dates, relative date ranges, or no date filter), limiting the number of results, and filtering by specific customers. It can return all results or a limited subset based on user preference. The output can be wrapped into a single item to simplify downstream processing.
Use Case Examples
- An MSP wants to generate a report of all M365 alerts for the previous month across multiple customers to identify security trends.
- A security administrator needs to fetch M365 alerts for a specific date range to investigate a recent security incident.
- A user wants to limit the report to a maximum of 50 alerts and filter the results to specific customers they manage.
Properties
| Name | Meaning |
|---|---|
| Return All | Whether to return all results or only up to a given limit. |
| Limit | Maximum number of results to return when 'Return All' is false. |
| Date Selection Method | Choose whether to use specific dates, relative date ranges, or include all dates (no date filter). |
| Start Date | Start date for filtering report data (inclusive), used when 'Specific Dates' is selected. |
| End Date | End date for filtering report data (inclusive), used when 'Specific Dates' is selected. |
| Date Range | Predefined relative date range for filtering report data, used when 'Relative Date Range' is selected. |
| Filter by Customer(s) | Whether to filter results by specific customers. |
| Customer IDs | IDs of the customers to filter by, used when 'Filter by Customer(s)' is true. |
| Wrap Output Items | When enabled, wraps all output items into a single item containing an array to prevent the next node from executing multiple times. |
| Wrapper Property Name | The property name to use for the wrapped array of items in the output. Default is 'items'. |
Output
JSON
jsonerror- Error message if the operation fails for a specific item.items- When output is wrapped, contains an array of all output items.count- When output is wrapped, contains the count of all output items.
Dependencies
- Druva MSP API with appropriate API key credentials
Troubleshooting
- Ensure the API credentials are correctly configured and have permissions to access the M365 alerts report.
- If the node returns an error related to resource not implemented, verify that the resource 'Report - Enterprise Workloads' and operation 'Get M365 Alerts Report' are supported in the current version of the node.
- If filtering by customers, ensure the customer IDs are valid and accessible by the API credentials.
- If no data is returned, check the date filters and ensure there is data available for the selected date range.