Title: Some users’ activities and threat detection alerts in Microsoft Defender for Cloud Apps may be delayed by two hours
User impact: Users’ activities and threat detection alerts in Microsoft Defender for Cloud Apps may have been delayed by two hours.
More info: Delays may have been up to two hours.
Final status: We’ve determined that a subset of infrastructure which facilitates request routing for Microsoft Defender for Cloud Apps was performing below expected standards, resulting in alert request queuing, and causing the impact. We manually restarted the affected infrastructure, which allowed the backlog of alert requests to process, and we confirmed through service telemetry to have remediated the impact.
Scope of impact: The problem may have impacted some users who were served through the affected infrastructure.
Start time: Monday, October 23, 2023, at 10:30 AM UTC
End time: Monday, October 23, 2023, at 3:30 PM UTC
Root cause: A subset of infrastructure which facilitates request routing for Microsoft Defender for Cloud Apps was performing below expected standards, resulting in alert request queuing, and causing the impact.
Next steps:
– We’re reviewing this subset of service infrastructure to understand why it was performing below expected thresholds to progress our understanding of the cause and prevent similar impact from reoccurring.
This is the final update for the event.
Posted inUncategorized