We have just started importing our O365 and Azure data into Splunk.
There was a Google Sheet that provided a great overview and was also maintained by a Splunk team (around @jconger ).
Azure/O365 Splunk Add-on Required Permissions - Google Sheets
Unfortunately, the sheet is no longer publicly accessible.
Does anyone know the reason for this? Is there any way to access it again or obtain a current copy?
That would be wonderful! Many thanks!
Marco
While the sheet is no longer publicly accessible, I spun up a new page to host the content. Same content; different medium. https://bit.ly/Splunk_Azure_Permissions
While the sheet is no longer publicly accessible, I spun up a new page to host the content. Same content; different medium. https://bit.ly/Splunk_Azure_Permissions
Thank you very much, Jason!
The list is very helpful in keeping track of the various add-ons, functions and permissions.
Thank you for compiling it and making it available to the community!