All Apps and Add-ons

Is there documentation for Microsoft 365 App for Splunk (https://splunkbase.splunk.com/app/3786)?

matteosplunk
New Member
Hi everyone,
is there an official document for the necessary api permissions?
Or does anyone know about these permissions?

Thank you
Labels (1)
0 Karma

PaulPanther
Motivator

@matteosplunk This app does not need any api permission. It only provides Dashboards based on following Add-ons:

Splunk Add-on for Microsoft Office 365 - https://splunkbase.splunk.com/app/4055/

Splunk Add-on for Microsoft Security - https://splunkbase.splunk.com/app/6207/

Microsoft 365 Reporting Add-on for Splunk - https://splunkbase.splunk.com/app/3720/

Microsoft Teams Add-on for Splunk - https://splunkbase.splunk.com/app/4994/

What kind of data do you wanna onboard?

0 Karma

matteosplunk
New Member

Hi

Paul Panther

Thank you for your answer.

I need to inboard data from  Microsoft Defender / Threat ExplorerImmagine 2023-02-21 090614.png

0 Karma

PaulPanther
Motivator

@matteosplunk Then you have to install Splunk Add-on for Microsoft Security | Splunkbase on your data collection node.

The documentation can be found here About the Splunk Add-on for Microsoft Security - Splunk Documentation

0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...