I am using Splunk Addon for Microsoft cloud services add on to integrate splunk with MS Azure.
I want to ingest event hub data to Splunk and for that i have done all the prerequisite we needed like app registration on azure side and configured azure app account in Splunk Addon for Microsoft cloud services on Splunk. Then i configured the Azure event hub input in splunk add on. But i am not able to get event hub data on splunk.
But i configured Azure Audit logs input on splunk add on then i am able to get audit logs on splunk.