Getting Data In

Splunk cloud and Microsoft Infrastructure

skeeter395
Observer

Hello All,

It is only Tuesday and it has been quite the journey. I have a splunk cloud instance. I logged a call and got the Splunk add-on for Microsoft Infrastructure installed. Went to configure it and found that I needed the Microsoft add-on for Active Directory also configured. So after reading the documentation:

https://docs.splunk.com/Documentation/SA-LdapSearch/3.0.1/User/ConfiguretheSplunkSupportingAdd-onfor...

I found that I need to configure the add-on for AD on a heavy forwarder on site. So the above link sent me to here:

https://docs.splunk.com/Documentation/SA-LdapSearch/3.0.1/User/ConfiguretheSplunkSupportingAdd-onfor...

Once at the above link everything starts to fall apart. The documentation style on the splunk site is so bad. Just link to link to link with not really good substance of data. The lines get blurred really quickly on what I need to do if I have Splunk cloud and if I have Splunk enterprise. Do we have a good guide on how to get these pieces working together? Sorry for sounding grumpy it has been an adventure.

 

Thanks,

Scott

Labels (1)
0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...