Audit log to splunk

Patel, Dipa 0 Reputation points
2023-12-18T22:07:41.7966667+00:00

Best way to send logs to Splunk from Conditional Access | Audit logs for O365 tenant

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

1 answer

Sort by: Most helpful
  1. Carlos Solís Salazar 18,191 Reputation points MVP Volunteer Moderator
    2023-12-19T18:14:30.36+00:00

    I'll recommend using the following documentation https://learn.microsoft.com/en-us/entra/identity/monitoring-health/howto-stream-logs-to-event-hub?tabs=splunk

    If this response was helpful, please consider accepting it. Feel free to ask if you have more questions or need further assistance!

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.