All Apps and Add-ons

Can't view Advanced Hunting Results in Microsoft 365 App for Splunk?

Medguy
New Member

Hi,
I'm having trouble seeing the "Advanced Hunting Results" Dashboard section of the "Microsoft 365 App for Splunk" app, I have the Add-on "Splunk add-On for Microsoft Security" installed but I can't get the sourcetype m365:defender:incident:advanced_hunting.
I already validated the permissions within the application in AAD and if they are granted, any ideas?

Labels (3)
0 Karma

splunkuser88
Observer

I am having the same issue as well, have you found out anything new?

0 Karma
Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...