I have install the Splunk add on for Azure and also configure the storage account.
After that I have Configured the input as blob by specify the interval for pulling data from Blob storage. But still am unable to get the data from blob indexed in Splunk. I have created a separate index for that also named as "Azure". I have troubleshoot also as much i know like i have checked whether listening port is opened or not and also checked the forwarder connection is active or not on the indexer,still unable to get my logs .
Please help me out to troubleshoot it or correct me if am wrong somewhere or missing something.
Thanks.
Here is a good walkthrough for getting blob and table data into Splunk -> https://www.splunk.com/blog/2017/08/18/splunking-microsoft-cloud-data-part-2.html