Sending Azure AAD provisioning logs to Splunk

sanjeev yadav 0 Reputation points
2024-05-02T02:11:36.7466667+00:00

How can we send user provisioning logs from azure Aad to Splunk for monitor.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

1 answer

Sort by: Most helpful
  1. Vasil Michev 119.8K Reputation points MVP Volunteer Moderator
    2024-05-02T07:19:54.2033333+00:00

    You can configure it using the "stream to event hub" method as detailed here: https://learn.microsoft.com/en-us/entra/identity/monitoring-health/howto-stream-logs-to-event-hub?tabs=splunk

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.