All Apps and Add-ons

Is there documentation for Microsoft 365 App for Splunk (https://splunkbase.splunk.com/app/3786)?

matteosplunk
New Member
Hi everyone,
is there an official document for the necessary api permissions?
Or does anyone know about these permissions?

Thank you
Labels (1)
0 Karma

PaulPanther
Motivator

@matteosplunk This app does not need any api permission. It only provides Dashboards based on following Add-ons:

Splunk Add-on for Microsoft Office 365 - https://splunkbase.splunk.com/app/4055/

Splunk Add-on for Microsoft Security - https://splunkbase.splunk.com/app/6207/

Microsoft 365 Reporting Add-on for Splunk - https://splunkbase.splunk.com/app/3720/

Microsoft Teams Add-on for Splunk - https://splunkbase.splunk.com/app/4994/

What kind of data do you wanna onboard?

0 Karma

matteosplunk
New Member

Hi

Paul Panther

Thank you for your answer.

I need to inboard data from  Microsoft Defender / Threat ExplorerImmagine 2023-02-21 090614.png

0 Karma

PaulPanther
Motivator

@matteosplunk Then you have to install Splunk Add-on for Microsoft Security | Splunkbase on your data collection node.

The documentation can be found here About the Splunk Add-on for Microsoft Security - Splunk Documentation

0 Karma
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...