We are using Self service Splunk cloud and we do not have access to CLI. In addition, we are not using any deployment server. Splunk Cloud store its internal audit log on cloud.
How do I forward these internal audit log to third party system?
if it is Splunk Cloud that Splunk hosts (owns) will recommend to contact yor Splunk Cloud Ops team