Introduction
The reason I decided to put this post up is simply because I've just lost the past 4 hours of my life to trying to forward syslog from an Azure VM into Microsoft Sentinel.
From what I've seen there's at least 4 different Microsoft documented ways of doing this,