Splunk® App for Microsoft Exchange (EOL)

Deploy and Use the Splunk App for Microsoft Exchange

On October 22 2021, the Splunk App for Microsoft Exchange will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Microsoft Exchange.
This documentation does not apply to the most recent version of Splunk® App for Microsoft Exchange (EOL). For documentation on the most recent version, go to the latest release.

Download and configure the Splunk Add-ons for Microsoft Exchange

The Splunk Add-ons for Microsoft Exchange collect Exchange data. When you deploy the add-ons to your Exchange Server deployment clients, the clients forward Exchange data to the central Splunk App for Microsoft Exchange indexer.

Detailed descriptions of the Splunk Add-ons for Microsoft Exchange

The following table lists the Exchange add-ons and what each add-on provides.

Add-on: Description:
TA-Exchange-CAS For hosts that run Exchange Server and hold the Client Access Server role. Supports Exchange Server 2007, 2010, and 2013.
TA-Exchange-HubTransport For hosts that run Exchange Server and hold the Hub Transport server role. Supports Exchange Server 2007, 2010, and 2013.
TA-Exchange-MailboxStore For hosts that run Exchange Server and hold the Mailbox Server role. Supports Exchange Server 2007, 2010, and 2013.
TA-Windows-Exchange-IIS For hosts that run Exchange Server 2013 and hold the Client Access Server role
TA-SMTP-Reputation E-mail sender reputation, requires a server that has an outbound connection to the Internet

Download the Splunk Add-ons for Exchange

The Splunk Add-ons for Exchange are available on Splunkbase.

Download the add-on and save it to an accessible place on the deployment server.

  1. In a web browser, proceed to the Splunk Add-ons for Microsoft Exchange download page.
  2. Click the download link to begin the download process. You might need to sign in with your Splunk account before the download starts.
  3. When prompted, choose an accessible location on your deployment server to save the download. Do not attempt to run the download.
  4. Use an archive utility such as WinZip to unarchive the file to an accessible location.

Configure the Splunk Add-ons for Exchange

New installations

For a new installation, the Splunk Add-ons for Microsoft Exchange must be configured for the version of Exchange Server that you run. See the following topics in Deploy and Use the Splunk Add-ons for Microsoft Exchange for specific configuration instructions:

The Deploy and Use the Splunk Add-ons for Microsoft Exchange manual is also a good place to get general background information on the updated add-ons.

Existing installations

If you are upgrading from an earlier version of the Splunk App for Microsoft Exchange, then you must follow specific upgrade instructions. See Upgrade from version 3.2.x.

Next Step

You have downloaded the Splunk Add-ons for Microsoft Exchange. The next step involves deploying those add-ons into the deployment clients that you install on your Exchange servers.

Deploy the Splunk Add-ons for Microsoft Exchange

Last modified on 13 January, 2017
Configure Exchange servers   Deploy the Splunk Add-on for Microsoft Exchange

This documentation applies to the following versions of Splunk® App for Microsoft Exchange (EOL): 3.4.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters