Getting Data In

Splunk cloud and Microsoft Infrastructure

skeeter395
Observer

Hello All,

It is only Tuesday and it has been quite the journey. I have a splunk cloud instance. I logged a call and got the Splunk add-on for Microsoft Infrastructure installed. Went to configure it and found that I needed the Microsoft add-on for Active Directory also configured. So after reading the documentation:

https://docs.splunk.com/Documentation/SA-LdapSearch/3.0.1/User/ConfiguretheSplunkSupportingAdd-onfor...

I found that I need to configure the add-on for AD on a heavy forwarder on site. So the above link sent me to here:

https://docs.splunk.com/Documentation/SA-LdapSearch/3.0.1/User/ConfiguretheSplunkSupportingAdd-onfor...

Once at the above link everything starts to fall apart. The documentation style on the splunk site is so bad. Just link to link to link with not really good substance of data. The lines get blurred really quickly on what I need to do if I have Splunk cloud and if I have Splunk enterprise. Do we have a good guide on how to get these pieces working together? Sorry for sounding grumpy it has been an adventure.

 

Thanks,

Scott

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...