Modify your Azure data inputs
Perform modifications to your existing Azure data inputs in Data Manager.
Edit your Azure data inputs for Data Manager
Consider a scenario where you onboarded data for Microsoft Azure accounts, and you need to to edit your data inputs after onboarding.
If your Client Secret has expired, you will have to enter and submit a valid one. Without a valid Client Secret, you cannot save the edits to your input.
- From the Splunk Cloud home page, select Data Manager from the Apps menu.
- From the Data Management page, find the Azure data input you want to revise, and click the Edit action.
- Make edits to your data input.
- Based on the edits to your data input, update the diagnostic settings on your subscriptions.
Delete an Azure data input
Before deleting this data input configuration, you need to clean up the Azure setup. The Azure cleanup process cannot be canceled or paused, while in progress.
Delete an Azure Activity Logs input
You can delete your Microsoft Entra ID data inputs from the Azure CLI or from the Powershell CLI using the steps in the Data Manager app.
- Clean up your Azure resources configurations.
- After you clean up the Azure deployment, click the Delete Data Input button to delete your data input.
Delete a Microsoft Entra ID input
You can delete your Azure Activity Logs data inputs from the Powershell CLI.
- Delete the diagnostic settings from your Azure Portal.
- Clean up your Azure resources configurations.
- After you clean up the Azure deployment, click the Delete Data Input button to delete your data input.
Delete an Azure Event Hub input
The Azure Event Hub data input is available for private preview customers. If you'd like to participate in the Splunk private preview program, contact your account team.
You can delete Azure Event Hub data inputs using the graphical user interface of Data Manager.
- On the Data Management home page, find the Azure data input that you want to delete.
- Click the Delete action.
- In the Delete Data Input dialog, click the Delete Input button.
Data from a deleted input remains available.
Verify the data input for Azure in Data Manager | Migrate event hubs data from the Splunk Add-on for Microsoft Cloud Services to Data Manager |
This documentation applies to the following versions of Data Manager: 1.11.0
Feedback submitted, thanks!