Getting Data In

onboarding azure signin logs to splunk

rajeshmetso
Engager

I want to onboard azure signin logs to my splunk. I installed MS azure add-on for splunk on one HF and completed the authentication steps and app registration. Please suggest whats going wrong.

Am getting below error. 
INFO pid=4495 tid=MainThread file=splunk_rest_client.py:_request_handler:105 | Use HTTP connection pooling

INFO pid=4495 tid=MainThread file=setup_util.py:log_info:117 | Proxy is not enabled!

ERROR pid=4495 tid=MainThread file=base_modinput.py:log_error:309 | _Splunk_ Unable to obtain access token

Labels (2)
0 Karma

Azeemering
Builder

Are you connected directly to the internet? Do you have a proxy defined?

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...