O am trying to install Windows Defender ATP Modular Inputs TA in Splunk cloud but it tells my to contact support.
Can someone assist me getting this add on installed, enabled for installation because it is not yet certified?
Thanks
If the TA is not available for Splunk Cloud as @erichanley2018 pointed out, what you could do is setup a Heavy Forwarder in AWS or Azure, install the TA there, and then forward the events to your primary Splunk Cloud instance.
Is this available on the cloud version yet? It will not let me submit a support case.
Thanks
It says that this app is not available for Splunk cloud. I assume that this means that we cannot use it, but wondered if this might be something that could be installed on our HFs, where data would be collected, normalized, then uploaded to our Splunk Cloud instance. <--- Think this would work?