Splunk® App for Microsoft Exchange (EOL)

Deploy and Use the Splunk App for Microsoft Exchange

Acrobat logo Download manual as PDF


On October 22 2021, the Splunk App for Microsoft Exchange will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Microsoft Exchange.
This documentation does not apply to the most recent version of Splunk® App for Microsoft Exchange (EOL). For documentation on the most recent version, go to the latest release.
Acrobat logo Download topic as PDF

Permissions checklist

This topic details the list of permissions you must have in order to install the Splunk App for Microsoft Exchange.

Administrative access to Exchange servers

In order to install the Splunk App for Microsoft Exchange, you must have administrative access to Exchange server and be able to make configuration changes.

Administrative access to Active Directory

In order to make changes to Active Directory services, such as enabling debug logging in DNS and increasing Active Directory audit policy, you must be a domain administrator in the Active Directory domain(s) you want to monitor.

Administrative access to Windows servers

You must have administrative access to all Windows servers - and especially Exchange servers - in the Splunk App for Microsoft Exchange deployment. The central servers require this access to install Splunk Enterprise. Any servers in the field also require this access to install universal forwarders. Splunk must run as a user with administrative access to the machine.

Last modified on 13 January, 2017
PREVIOUS
Platform and hardware requirements
  NEXT
What data the Splunk App for Microsoft Exchange collects

This documentation applies to the following versions of Splunk® App for Microsoft Exchange (EOL): 3.4.1


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters