All Apps and Add-ons

Is there documentation for Microsoft 365 App for Splunk (https://splunkbase.splunk.com/app/3786)?

matteosplunk
New Member
Hi everyone,
is there an official document for the necessary api permissions?
Or does anyone know about these permissions?

Thank you
Labels (1)
0 Karma

PaulPanther
Motivator

@matteosplunk This app does not need any api permission. It only provides Dashboards based on following Add-ons:

Splunk Add-on for Microsoft Office 365 - https://splunkbase.splunk.com/app/4055/

Splunk Add-on for Microsoft Security - https://splunkbase.splunk.com/app/6207/

Microsoft 365 Reporting Add-on for Splunk - https://splunkbase.splunk.com/app/3720/

Microsoft Teams Add-on for Splunk - https://splunkbase.splunk.com/app/4994/

What kind of data do you wanna onboard?

0 Karma

matteosplunk
New Member

Hi

Paul Panther

Thank you for your answer.

I need to inboard data from  Microsoft Defender / Threat ExplorerImmagine 2023-02-21 090614.png

0 Karma

PaulPanther
Motivator

@matteosplunk Then you have to install Splunk Add-on for Microsoft Security | Splunkbase on your data collection node.

The documentation can be found here About the Splunk Add-on for Microsoft Security - Splunk Documentation

0 Karma
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...