Getting Data In

unable to get MS Azure event hub using Splunk Addon for Microsoft cloud services add on



I am using Splunk Addon for Microsoft cloud services add on to integrate splunk with MS Azure.

I want to ingest event hub data to Splunk and for that i have done all the prerequisite we needed like app registration on azure side and configured azure app account in Splunk Addon for Microsoft cloud services on Splunk. Then i configured the Azure event hub input in splunk add on. But i am not able to get event hub data on splunk.

But i configured Azure Audit logs input on splunk add on  then i am able to get audit logs on splunk.

Can anyone please help me what can be issue?

Labels (2)
0 Karma
.conf21 Now Fully Virtual!
Register for FREE Today!

We've made .conf21 totally virtual and totally FREE! Our completely online experience will run from 10/19 through 10/20 with some additional events, too!