Use Splunk to Collect Logs from Office 365 and Azure AD

Поделиться
HTML-код
  • Опубликовано: 22 окт 2024

Комментарии • 43

  • @txgoalie15
    @txgoalie15 4 года назад +5

    The instructions from Splunk were lacking. This got me where I needed to go. Thanks!

    • @Ciraltos
      @Ciraltos  3 года назад

      Glad I could help!

    • @FracturesHD
      @FracturesHD 3 года назад

      It seems like the documentation from Splunk is always lacking. Glad I'm not the only one who thinks this.

  • @ashleyhammond7564
    @ashleyhammond7564 4 года назад +2

    Travis is a legend. His youtube content is so good that i went and purchased his WVD coarse and it was worth every penny!!

  • @stefanspinu5381
    @stefanspinu5381 4 года назад +4

    I feel like these videos will be very useful for people over the long haul, even though the UI will most likely change. Great job!

    • @bettycole9233
      @bettycole9233 3 года назад

      @Darkteckh on telegram is a real vendor I can’t believe my eyes that man too real Go on his telegram He sell credit card with high balance💦

  • @alfonsorodriguez5449
    @alfonsorodriguez5449 4 года назад +6

    Totally impressed for the completeness of this video, super useful, Thanks !

    • @Ciraltos
      @Ciraltos  4 года назад

      Great to hear!

    • @bettycole9233
      @bettycole9233 3 года назад

      @Darkteckh on telegram is a real vendor I can’t believe my eyes that man too real Go on his telegram He sell credit card with high balance💦

  • @gnanaraja5277
    @gnanaraja5277 4 года назад +1

    Thanks a lot for the Video Travis. It helped me to implement the same. Keep up the good work!!

    • @bettycole9233
      @bettycole9233 3 года назад

      @Darkteckh on telegram is a real vendor I can’t believe my eyes that man too real Go on his telegram He sell credit card with high balance💦

  • @JMANGRUNT
    @JMANGRUNT 2 года назад +1

    I think the process may have changed a bit with newer versions of the add-on, now you need to get most of the api permissions from the microsoft graph api.

  • @GOATTIGER3
    @GOATTIGER3 3 года назад

    Thanks for posting this video. It is really useful. Does this add-on pull info from defender portal? Thanks!

  • @princysamuel2914
    @princysamuel2914 3 года назад

    Thankyou Travis.Very very useful video. Step by step explanation helped me understand the complete setup.

  • @dn8153
    @dn8153 3 года назад

    A great video is so much easier to follow then documentation. This indeed is a great video. Well done!

    • @Ciraltos
      @Ciraltos  3 года назад

      Glad it was helpful!

  • @akankshasagar5553
    @akankshasagar5553 4 года назад +1

    Very useful! Thank you for sharing it ..keep up the good work.

    • @Ciraltos
      @Ciraltos  4 года назад

      Glad it was helpful!

  • @ImranAhmedBugti
    @ImranAhmedBugti 2 месяца назад

    Appreciated travis, can you upload for microsoft defender integration with Splunk

  • @kundankumarsaraf3563
    @kundankumarsaraf3563 3 месяца назад

    Useful video. Thanks.

  • @markrawson1435
    @markrawson1435 2 года назад

    hello Travis, can you add a video on how to setup splunk with event hub or azure log analytics

  • @TheNinetyEagle
    @TheNinetyEagle 2 года назад

    Thank you this helped me a lot :)

  • @GoFancy101
    @GoFancy101 2 года назад

    Thank you for the information

  • @itistheway6893
    @itistheway6893 4 года назад +1

    Thank you for creating this. Trying to decipher steps from Splunk and Microsoft's documentation is impossible.

    • @Ciraltos
      @Ciraltos  4 года назад

      You're very welcome!

    • @hatbeardx
      @hatbeardx 4 года назад

      100% it was all nonsense but this made it easy

  • @jwkriewall5610
    @jwkriewall5610 3 года назад

    Would this method work with powerApps?

  • @imadtakrouri8747
    @imadtakrouri8747 3 года назад

    when request API permission we cannot see Activity reports, threat Intelligence, could you help me please

  • @larryharris2428
    @larryharris2428 4 года назад

    In my azure AD admin center unter my splunklogs app, when setting the Office 365 Management APIs, I only see ActivityFeed and ServiceHealth, the ActivityReports and ThreatIntelligence do not Show up for me. Do you have any clue as to why it would be like this in my portal?

  • @rohitnikam6089
    @rohitnikam6089 4 года назад

    I am working on installing Microsoft teams add on for splunk since its a pre-requisite for Microsoft office 365 app for Splunk. I am having issue with Webhook for Teams Add-On. Have you ever tried collecting logs for Microsoft Teams?

    • @Ciraltos
      @Ciraltos  4 года назад +1

      Sorry, I haven't tried that one.

  • @pradnyakamble5950
    @pradnyakamble5950 3 года назад +1

    Hey the link for the blog is not working

    • @Ciraltos
      @Ciraltos  3 года назад +1

      I got a 404 error trying to access the page, did a search and found it with the same link, odd. If it’s still a problem, go to splunkbase.splunk.com search for Microsoft 365 App, it’s the “Microsoft 365 App for Splunk".

    • @pradnyakamble5950
      @pradnyakamble5950 3 года назад

      Not for the app It's for the blog I am talking

  • @sigitsuryana6399
    @sigitsuryana6399 4 года назад +1

    hi sir, thanks you help me a lot ...

  • @smartmiran
    @smartmiran 3 года назад

    The way you don't or can't keep eye contact with audience does not make me want to ingage. The video was very interesting though. Thanks