All Apps and Add-ons

What search time apps are you using to view and monitor Microsoft Cloud information?

kwasielewski
Path Finder

Hello,

We are interested in monitoring our O365 and Azure environments using Splunk. There is a TA out available to collect the data but I didn't see a corresponding APP to install on my search heads to view the incoming data. Any suggestions for an app to use or a suite of apps to use for monitoring those events?

Does the Splunk App for Windows Infrastructure handle information from Microsoft Cloud data sources?

Thank you,

Ken

0 Karma

sloshburch
Ultra Champion

Those add-ons actually include a bunch of prebuilt panels. So while the data may be reused in other apps, you could rock and roll with just the add-ons prebuilt panels if you desire.

Related: What are the Splunk apps and add-ons for Microsoft technologies, and what do I use them for?

0 Karma

wbfoxii
Communicator

I don't think that the Splunk App for Windows Infrastructure will handle these events. The data coming from the TA for MS Cloud Services in JSON.

There are a couple of dashboards, which I think are actually for ES.

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...