Getting Data In

Splunk Add-on for Microsoft Office 365 - Inputs configuration

njytrde
Explorer

Hello,

On the HF of this add-on there is an Inputs configuration.  On the Content Type drop down, there is a choice of four different types for audit.  Screen shot attached.

Does anyone have the link to documentation for what the differences are for logging the those audit.selections?

Office365 Config.PNG

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...