All Apps and Add-ons

Is there documentation for Microsoft 365 App for Splunk (https://splunkbase.splunk.com/app/3786)?

matteosplunk
New Member
Hi everyone,
is there an official document for the necessary api permissions?
Or does anyone know about these permissions?

Thank you
Labels (1)
0 Karma

PaulPanther
Motivator

@matteosplunk This app does not need any api permission. It only provides Dashboards based on following Add-ons:

Splunk Add-on for Microsoft Office 365 - https://splunkbase.splunk.com/app/4055/

Splunk Add-on for Microsoft Security - https://splunkbase.splunk.com/app/6207/

Microsoft 365 Reporting Add-on for Splunk - https://splunkbase.splunk.com/app/3720/

Microsoft Teams Add-on for Splunk - https://splunkbase.splunk.com/app/4994/

What kind of data do you wanna onboard?

0 Karma

matteosplunk
New Member

Hi

Paul Panther

Thank you for your answer.

I need to inboard data from  Microsoft Defender / Threat ExplorerImmagine 2023-02-21 090614.png

0 Karma

PaulPanther
Motivator

@matteosplunk Then you have to install Splunk Add-on for Microsoft Security | Splunkbase on your data collection node.

The documentation can be found here About the Splunk Add-on for Microsoft Security - Splunk Documentation

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...