I want to connect with Azure Active Directory and get its logs into Splunk. What is the procedure of doing this? Can a Splunk forwarder be installed in Azure (and how should it be done)? Or should Azure AD send log data to an external forwarder?
Any help would be appreciated.
and in particular http://docs.splunk.com/Documentation/AddOns/latest/MSCloudServices/Hardwareandsoftwarerequirements
should answer your question.
View solution in original post