Getting Data In

unable to get MS Azure event hub using Splunk Addon for Microsoft cloud services add on



I am using Splunk Addon for Microsoft cloud services add on to integrate splunk with MS Azure.

I want to ingest event hub data to Splunk and for that i have done all the prerequisite we needed like app registration on azure side and configured azure app account in Splunk Addon for Microsoft cloud services on Splunk. Then i configured the Azure event hub input in splunk add on. But i am not able to get event hub data on splunk.

But i configured Azure Audit logs input on splunk add on  then i am able to get audit logs on splunk.

Can anyone please help me what can be issue?

Labels (2)
0 Karma
Register for .conf21 Now! Go Vegas or Go Virtual!

How will you .conf21? You decide! Go in-person in Las Vegas, 10/18-10/21, or go online with .conf21 Virtual, 10/19-10/20.