Hi All,
Microsoft publishes its azure service status across geo-location in the link "https://azure.microsoft.com/en-us/status/". Is it possible to ingest this data into Splunk and have a dashboard\Alert created to get notified about an outage.
this will be helpful to monitor both Global and our own environment outage status. If anyone has done this, please share the details.
This type of data is available via the Azure Audit input in the Splunk Add-on for Microsoft Cloud Services. The following search will give you a bit of information:
sourcetype="ms:o365:management" Messages{}.MessageText=*
Information like the following is produced which could be used for a similar type of dashboard: