WARNING: THIS SITE IS A MIRROR OF GITHUB.COM / IT CANNOT LOGIN OR REGISTER ACCOUNTS / THE CONTENTS ARE PROVIDED AS-IS / THIS SITE ASSUMES NO RESPONSIBILITY FOR ANY DISPLAYED CONTENT OR LINKS / IF YOU FOUND SOMETHING MAY NOT GOOD FOR EVERYONE, CONTACT ADMIN AT ilovescratch@foxmail.com
Skip to content
Jason Conger edited this page Dec 15, 2025 · 29 revisions

Splunk Add-on for Microsoft Azure

Important

The inputs in this add-on have migrated to other Splunk-supported add-ons. More information can be found here.

The Splunk Add-on for Microsoft Azure collects data from Microsoft Azure including the following:

This add-on contains the following alert actions:

  • Stop Azure VM - stops an Azure Virtual Machine.
  • Add member to group - adds a user to a group. This can be useful if you need to enable additional policies like MFA based on search results.
  • Dismiss Azure Alert - dismisses an Azure Security Center alert.

Note:

Version 3.0.0 and later of the Microsoft Azure Add-on for Splunk is compatible only with Splunk Enterprise version 8.0.0 and above.

Privacy

Use of this add-on is permitted subject to your obligations, including data privacy obligations, under your agreement with Splunk and Splunk's Privacy Policy.

Clone this wiki locally