Splunk Enterprise

Splunk Add-on for Microsoft Cloud Services: Why is data not getting indexed in Splunk?

Ashwini008
Builder

Hi,

I am trying to use this Splunk Add-on for Microsoft Cloud Services on Splunk Enterprise platform.

I have followed all the steps mentioned in the splunk doc Configure a Storage Account in Microsoft Cloud Services - Splunk Documentation

But Data is not getting indexed in Splunk unless i select the highlighted one in below pic in the Azure storage account

Ashwini008_0-1674024075740.png

 Due to company policy i cannot set it to "Enabled from all networks". I have tried raising microsoft support request but didnt get the solution.

I am able to fetch the data from the storage account directly into Virtual Machine using azcopy command but using add on i am not able to index/fetch the data into splunk.

Any help on troubleshooting this issue will be of great help

0 Karma
Get Updates on the Splunk Community!

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...