All Apps and Add-ons

V 2.0 With this app having an integration with Eventhubs whats the Overlap and gaps between the Azure Monitor App ?

Esky73
Builder

Does this pull the same metrics from Event hubs as Azure_monitor ?

Activity log, ?
Diagnostic ?
Metrics, ?

thanks.

0 Karma
1 Solution

jconger
Splunk Employee
Splunk Employee

Yes, this add-on pulls in the same Event Hub data (Activity Log and Diagnostic Logs) as the Azure Monitor add-on. The setup experience in the MS Azure Add-on for Splunk is simplified as well - all you need is the Event Hub connection string and the name of the Event Hub you want to query. You don't need a key vault or service principal.

Also, this add-on collects metrics from the same place the Azure Monitor add-on uses ( https://docs.microsoft.com/en-us/azure/azure-monitor/platform/metrics-supported ).

View solution in original post

jconger
Splunk Employee
Splunk Employee

Yes, this add-on pulls in the same Event Hub data (Activity Log and Diagnostic Logs) as the Azure Monitor add-on. The setup experience in the MS Azure Add-on for Splunk is simplified as well - all you need is the Event Hub connection string and the name of the Event Hub you want to query. You don't need a key vault or service principal.

Also, this add-on collects metrics from the same place the Azure Monitor add-on uses ( https://docs.microsoft.com/en-us/azure/azure-monitor/platform/metrics-supported ).

Esky73
Builder

Thanks Jason

0 Karma
Get Updates on the Splunk Community!

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...

Tech Talk | One Log to Rule Them All

One log to rule them all: how you can centralize your troubleshooting with Splunk logs We know how important ...

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through: An introduction to the Splunk Threat ...