In the following topic, there was a comment that Cloud can also be integrated with Splunk starting with the (A360.25) version, is it my understanding from the release notes and documentation that integration is not yet available for Cloud?
Is there another way to send audit logs to Splunk if the above integration is not yet available in the cloud?
You can integrate A360 with SIEM, audit logs can be sent to analytic tools, such as Splunk, Qradar, Sumologic, and ArcSight and view audit logs on Splunk dashboards.
You have to add a Data input in Splunk and configure a instance to listen on TCP/UDP port to capture the data, once you have Splunk configured and ready, you can configure A360 with SIEM integration as below.
Log in to the control room with Admin credentials and navigate to Settings->Syslog
Add the Splunk Server Host , Port, Protocol and save.