Announcing Splunk Add-on for Microsoft Cloud Services

Platform Elias Haddad

I am pleased to announce the availability of Splunk Add-On for Microsoft Cloud Services. Released on April 1st 2016, this add-on which is available on Splunkbase, provides Splunk admins the ability to collect events from various Microsoft Cloud Services APIs. In this first release, this includes:

If you are wondering what use cases could be achieved by ingesting this data into Splunk Enterprise or Splunk Cloud, following is a small sample:

MCS Integration Splunk improbable accesses

Screen Shot 2016-04-18 at 7.43.52 AM

Splunk MCS prebuilt panels

Last but not least, the configuration of this add-on supports OAuth v2 allowing you to run the setup without having to save any Azure credentials on your Splunk instance.Please give Splunk Add-on for Microsoft Cloud Services a try and let us know your feedback.

Happy Splunking!

Related Articles

Clara-fication: Data Onboarding Best Practices
Platform
11 Minute Read

Clara-fication: Data Onboarding Best Practices

The Splunk Security Center of Excellence outlines best practices they follow to bring data into Splunk.
A Deeper Dive into Machine Learning at Splunk
Platform
2 Minute Read

A Deeper Dive into Machine Learning at Splunk

Ever wondered where to get started with machine learning at Splunk? This blog contains links to deep dives that provide end-to-end guides for how to implement specific use cases against your own data.
Dynamic Data: Data Retention Options in Splunk Cloud Platform
Platform
3 Minute Read

Dynamic Data: Data Retention Options in Splunk Cloud Platform

Discover how Splunk Cloud Platform provides customers flexibility and choice on how their data is managed to address the needs of a diverse set of use cases and retention schemes.