All Apps and Add-ons

Steps for Configuring Splunk Add-on for Microsoft Office 365 for China Tenant

Tilakram
New Member

Hello Splunkers,

I’m working on integrating a Microsoft Office 365 tenant hosted in China (managed by 21Vianet) with Splunk Cloud. I am using the Splunk Add-on for Microsoft Office 365 but need help configuring it specifically for the China tenant.

I understand that the endpoints for China are different from the global Microsoft 365 environment. For instance:

Could someone provide step-by-step instructions or point me to the necessary configuration files (like inputs.conf) or documentation to correctly set this up for:

  • Subscription to O365 audit logs
  • Graph API integration
  • Event collection

Additionally, if there are any known challenges or limitations specific to the China tenant setup, I’d appreciate insights on those as well.

Thank you in advance for your guidance!

Tilakram

Labels (1)
0 Karma

Meett
Splunk Employee
Splunk Employee

Hello @Tilakram Add-on doesn’t support Azure china ByDefault so i am afraid if it will work or not.

0 Karma

Tilakram
New Member

Hello @Meett ,

Thank you for the quick response! I appreciate your insight.

If the Splunk Add-on for Microsoft Office 365 doesn’t natively support Azure China, are there any recommended workarounds or custom configurations (e.g., modifying inputs.conf or using custom scripts) that could enable data collection for China tenants?

Alternatively, are there other Splunk-supported methods or integrations that you’d recommend for ingesting Microsoft Office 365 logs from Azure China tenants? For instance, could a custom API integration with the Graph API endpoint https://microsoftgraph.chinacloudapi.cn be a feasible approach?

Looking forward to your thoughts!

Regards,
Tilakram

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Unlock New Opportunities with Splunk Education: Explore Our Latest Courses!

At Splunk Education, we’re dedicated to providing top-tier learning experiences that cater to every skill ...

Technical Workshop Series: Splunk Data Management and SPL2 | Register here!

Hey, Splunk Community! Ready to take your data management skills to the next level? Join us for a 3-part ...

Spotting Financial Fraud in the Haystack: A Guide to Behavioral Analytics with Splunk

In today's digital financial ecosystem, security teams face an unprecedented challenge. The sheer volume of ...