- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
How to ingest data from Tenant Office for Microsoft 365 App for Splunk?
Hello,
I am setting up this application (Microsoft 365 App for Splunk https://splunkbase.splunk.com/app/3786/) with our office tenant so that the dashboards work, I have followed the instructions on the documentation but I miss some things on the dashboards of exchange and Defender. I installed the add-on security and set up the inputs, gave the necessary authorizations from an application on Azure but no data passes. Same thing for Exchange, I followed the account creation procedure + rights, still nothing.
Add-on security : https://splunkbase.splunk.com/app/6207/
Exchange add-on : https://splunkbase.splunk.com/app/3720/
Has anyone had the same problem as me? Or the applications I use are no longer adequate for the Office 365 application?
Thanks in advance for your help.
