Getting Data In

Collect log - Azure Ad reset password

paul_mm
New Member

Hello guys,

 

I need to collect logs when the "admin of azure"  reset password or exclude one account.

I have tried use Splunk Add-on for Microsoft Azure OR Splunk Add-on for Microsoft O365 but I cant received this logs. I received the microsoft substrate management. 

Is there any orther app to install to collect this ? 

 

 

Labels (1)
0 Karma

meetmshah
SplunkTrust
SplunkTrust

This one have always help with all Azure onboarding questions, want to give it a try? - https://jasonconger.com/splunk-azure-gdi/

Reference -  https://www.splunk.com/en_us/blog/tips-and-tricks/getting-microsoft-azure-data-into-splunk.html?loca...

 

 

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...