The Workday Add-on for Splunk® enables you to automatically send a copy of user activity log data from your Workday tenant into your Splunk account. This enables you to use Splunk to parse the log data to monitor for harmful activity in your tenant.
If you enable this functionality, a copy of your user activity data will reside outside of Workday.
The Workday Add-on for Splunk is available on the Splunkbase site and is not part of the Workday Service. Follow the directions on Splunkbase to license and download the add-on.
Do these steps to set up Workday to send data to Splunk:
If the Workday Add-on for Splunk is not working as expected, please have a Workday Administrator in your organization create a case to receive assistance from Workday Support.
Create an Integrations Systems User and the associated Security Group and Policy.
For additional information, see Set Up Integration System User Security in Workday documentation.
For additional information, see Register API Client for Integrations in Workday documentation.
Added support to query the Workday endpoint in chunks to handle the api event limit
Added in-app proxy support
-- Specify hard timeout limits
-- Include workday.net as a valid TLD
Initial Application Release
Splunk AppInspect evaluates Splunk apps against a set of Splunk-defined criteria to assess the validity and security of an app package and components.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.