All Apps and Add-ons

How to ingest data from Tenant Office for Microsoft 365 App for Splunk?

Mimoune06
Engager

Hello,

I am setting up this application (Microsoft 365 App for Splunk https://splunkbase.splunk.com/app/3786/) with our office tenant so that the dashboards work, I have followed the instructions on the documentation but I miss some things on the dashboards of exchange and Defender. I installed the add-on security and set up the inputs, gave the necessary authorizations from an application on Azure but no data passes. Same thing for Exchange, I followed the account creation procedure + rights, still nothing.

Add-on security : https://splunkbase.splunk.com/app/6207/ 
Exchange add-on : https://splunkbase.splunk.com/app/3720/ 

Has anyone had the same problem as me? Or the applications I use are no longer adequate for the Office 365 application?

Thanks in advance for your help.

Labels (3)
0 Karma
Get Updates on the Splunk Community!

Fueling your curiosity with new Splunk ILT and eLearning courses

At Splunk Education, we’re driven by curiosity—both ours and yours! That’s why we’re committed to delivering ...

Splunk AI Assistant for SPL 1.1.0 | Now Personalized to Your Environment for Greater ...

Splunk AI Assistant for SPL has transformed how users interact with Splunk, making it easier than ever to ...

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureOn Demand Now Step boldly into the AI revolution with enhanced security ...