Hello All,
I have recently integrated O365 logs into splunk (security, management, and other audit logs). Since doing so my data summary lists 30k+ sources and growing. I am struggling to find information on how to consolidate this to one source. Does anyone have any insight into this?