Hi!
I want to connect with Azure Active Directory and get its logs into Splunk. What is the procedure of doing this? Can a Splunk forwarder be installed in Azure (and how should it be done)? Or should Azure AD send log data to an external forwarder?
Any help would be appreciated.
http://docs.splunk.com/Documentation/AddOns/released/MSCloudServices/About
and in particular http://docs.splunk.com/Documentation/AddOns/latest/MSCloudServices/Hardwareandsoftwarerequirements
should answer your question.