I have configured the add-on for getting the billing data into splunk. I have given read permission on the subscription to the Azure AD application.
What I get in Splunk is just this 1 event which looks like this
id: /subscriptions/xxxxxxxxxxx/providers/Microsoft.Billing/billingPeriods/202001-1
name: 202001-1
properties: { [-]
billingPeriodEndDate: 2019-11-13
billingPeriodStartDate: 2019-10-14
}
type: Microsoft.Billing/billingPeriods
}
How can I get all the billing details? what am I missing?
... View more