defender_get_machine_logon_users
Retrieve the list of users who logged onto a specific device using its machine ID. Optionally limit the number of users returned.
Instructions
List the users that logged on to a device.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| top | No | Maximum number of users to return (default 25, max 200). | |
| machine_id | Yes | The Defender for Endpoint machine (device) ID. |