Hi,
We are setting up "Splunk Add-on for Microsoft Office 365" to pull the event logs from our global tenant. But this is a shared tenant and has data from multiple domains, we would like to pull data only relevant to our domain and restrict other domains. Please let us know if we could achieve this.
https://www.ciraltos.com/use-splunk-to-collect-logs-from-office-365-and-azure-ad/
Thanks,
Sai