Hi,
Can anyone pls figure out from these list of apps which of these apps from web logs are not required for investigation/needed for ingesting in to Splunk to save the license cost ?
ssl
windows-remote-management
web-browsing
sap
ms-office365-base
google-base
soap
new-relic
okta
ms-onedrive-base
windows-push-notifications
dns-over-tls
crowdstrike
dns-over-https
outlook-web-online
ms-store
paloalto-updates
websocket
apple-push-notifications
gmail-base
yahoo-web-analytics
whatsapp-web
naver-line
hotmail
http-proxy
adobe-creative-cloud-base
telegram-base
ocsp
pan-db-cloud
windows-azure-base
github-base
apple-update
deepl-base
slack-base
egnyte-base
teamviewer-base
google-meet
facebook-chat
concur-base
google-docs-base
qlikview
paloalto-wildfire-cloud
successfactors
reddit-base
bananatag
google-analytics
as2
cisco-spark-base
viber-base
jabber
google-chat
taobao
appdynamics
icloud-mail
cloudinary-base
zoom-base
imgur-base
webdav
splashtop-remote
zscaler-internet-access
google-drive-web
ms-onedrive-business
liveperson
discord
salesforce-base
tokbox
quora-base
paloalto-dns-security
giphy-base
vimeo-base
giphy-downloading
notion-base
webex-base
openai-base
paloalto-cloud-identity
zendesk-base
paloalto-logging-service
dailymotion
paloalto-prisma-sdwan-control
paloalto-shared-services
cloudflare-warp
sharepoint-online
facebook-video
Thanks
This is an almost impossible ask as it depends on what scenarios you want to investigate and which of these apps are and are not involved.