Getting Data In

How to retrieve logs from Azure Active Directory?

Explorer

Hi!

I want to connect with Azure Active Directory and get its logs into Splunk. What is the procedure of doing this? Can a Splunk forwarder be installed in Azure (and how should it be done)? Or should Azure AD send log data to an external forwarder?

Any help would be appreciated.

0 Karma
1 Solution
State of Splunk Careers

Access the Splunk Careers Report to see real data that shows how Splunk mastery increases your value and job satisfaction.

Find out what your skills are worth!