Forum Discussion
Anurag65
Jan 22, 2020Copper Contributor
Splunk logs on Azure Sentinel
Team please confirm whether Splunk logs can be send on Azure Sentinel if yes how and where we can see the logs.
- Jan 26, 2020
Anurag65 , CliveWatson : we do see customers who prefer to reuse their existing collection infrastructure and hence send logs from a current SIEM to Sentinel. Splunk specifically supports forwarding events in CEF using the Splunk CEF app. You can also forward directly from a forwarder using Syslog.
AutomationMan
May 07, 2020Copper Contributor
Thanks for the prompt and helpful reply Ofer 🙂
- Col. S
- Col. S
yokhaldi
Microsoft
Jun 10, 2020AutomationMan i just finalised an integration to be able to export any data from splunk index to sentinel. I will share it as soon possible.