All Apps and Add-ons

Is there documentation for Microsoft 365 App for Splunk (https://splunkbase.splunk.com/app/3786)?

matteosplunk
New Member
Hi everyone,
is there an official document for the necessary api permissions?
Or does anyone know about these permissions?

Thank you
Labels (1)
0 Karma

PaulPanther
Motivator

@matteosplunk This app does not need any api permission. It only provides Dashboards based on following Add-ons:

Splunk Add-on for Microsoft Office 365 - https://splunkbase.splunk.com/app/4055/

Splunk Add-on for Microsoft Security - https://splunkbase.splunk.com/app/6207/

Microsoft 365 Reporting Add-on for Splunk - https://splunkbase.splunk.com/app/3720/

Microsoft Teams Add-on for Splunk - https://splunkbase.splunk.com/app/4994/

What kind of data do you wanna onboard?

0 Karma

matteosplunk
New Member

Hi

Paul Panther

Thank you for your answer.

I need to inboard data from  Microsoft Defender / Threat ExplorerImmagine 2023-02-21 090614.png

0 Karma

PaulPanther
Motivator

@matteosplunk Then you have to install Splunk Add-on for Microsoft Security | Splunkbase on your data collection node.

The documentation can be found here About the Splunk Add-on for Microsoft Security - Splunk Documentation

0 Karma
Get Updates on the Splunk Community!

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...