Tactical Solution for integrating logs from XMCloud and other Sitecore SaaS offerings with Splunk - running note
Currently, Sitecore DXP product SaaS suite doesn't support Common Audit Logging (CAL) as an e2e solution. So, as part of integrating the logs with an SIEM service like Splunk, you need to custom-stitch the integration by pulling all the logs across the suite in order to send those for observability to Splunk. So, this post will be a running note where I will add information and analysis I make as part of the integration process. Note that since this is a WiP, the code and information will be tweaked for better and optimized platform integration. Before proceeding further, here is some information from Sitecore: ======================================== These are different SaaS products available in your Sitecore Cloud: Sitecore Cloud Portal Sitecore XM Cloud Sitecore Search Sitecore Personalize Sitecore Connect Others It's important to know that the Sitecore Cloud Portal provides the single entry point for other Cloud products. Different products have different requirements fo