Skip to content

Release notes for the Splunk Add-on for Microsoft Office 365

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 was released on January 7, 2025.

Note

Version 4.3.0 and higher is expected to have around 1% of event duplication for the Management Activity input in the Splunk platform due to duplicate events from the Microsoft API.

About this release

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 is compatible with the following software, CIM versions, and platforms.

Splunk platform versions 9.1.x, 9.2.x, 9.3.x, 9.4.x
CIM 5.1.0
Supported OS Platform independent
Vendor products Microsoft Office 365

New features

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 has the following new features:

  • Audit Logs input enhancement

    • Fixed the potential data miss issue for Audit Logs input.

    • Added support for delay_throttle_min to handle the late arriving events on the Azure Cloud Audit Logs. For more information, see Audit Logs inputs.

Fixed Issues

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 contains the following, if any, fixed issues.

Known issues

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 contains the following, if any, known issues.

Third-party software attributions

Version 4.7.0 of the Splunk Add-on for Microsoft Office 365 incorporates the following third-party software or libraries.

Third-party software attributions for the Splunk Add-on for Microsoft Office 365