<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>rss.livelink.thread@place:occasion</title>
    <link>https://community.splunk.com/t5/Community-Office-Hours/Observability-Splunk-Observability-Cloud-Splunk-Platform-Wed-8/ec-p/698207#M113</link>
    <description>&lt;P&gt;&lt;STRONG&gt;Here are a few questions from the session (get the full Q&amp;amp;A deck and live recording in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;A href="https://splunk-usergroups.slack.com/archives/C0FRVF350" target="_blank" rel="noopener nofollow noreferrer"&gt;&lt;STRONG&gt;#office-hours&lt;/STRONG&gt;&lt;/A&gt;&lt;STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Slack channel)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp;What are the benefits of using Log Observer Connect? Who can use it?&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Centralize data experience between metrics, traces, logs within Splunk products&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Point and click experience&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Reach peak cloud visibility&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Get started in under 10 minutes&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Extend value of Splunk investment at no additional cost&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Available for customers using: Observability and Splunk Cloud or Splunk Enterprise&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;Documentation:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://docs.splunk.com/observability/en/logs/intro-logconnect.html" target="_blank" rel="noopener"&gt;https://docs.splunk.com/observability/en/logs/intro-logconnect.html&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2)&amp;nbsp;Does configuring/ enabling unified identity forgo the issues surrounding Log Observer Connect and a PCI Splunk Cloud Instance?&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Enabling Unified Identity forgoes the configuration process around Log Observer Connect. When a customer signs up for Unified Identity, a connection to the connected Splunk Cloud instance is made automatically and helps with RBAC (Role-based Access Control). This helps with allowing users to get access to selected indexes and/or have limits set on the number of searches that can be dispatched to the Splunk Cloud instance.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Configuring unified identity does not forgo PCI compliant issues. Observability is not PCI compliant, therefore, both Unified Identity and Log Observer Connect are not.&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;If a customer still wants to connect their PCI-compliant stack to O11y using Unified Identity or Log Observer Connect, they need to sign a consent form and the Observability backend team will add their organization to the exception list.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;3)&amp;nbsp;I'm currently using UF's for collecting log data. What are the benefits of adding the OpenTelemetry collector as a TA if I want to collect traces and metrics??&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Out of the box host metrics collection&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Deploy and monitor using the Deployment Server&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Similar lifecycle as other TAs&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;No change to log ingestion via UF&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;Documentation:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/OTC/1.3.0/manual/About" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;https://docs.splunk.com/Documentation/OTC/1.3.0/manual/About&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 04 Sep 2024 15:06:14 GMT</pubDate>
    <dc:creator>ArifV</dc:creator>
    <dc:date>2024-09-04T15:06:14Z</dc:date>
    <item>
      <title>Observability: Splunk Observability Cloud + Splunk Platform - Wed 8/14/24</title>
      <link>https://community.splunk.com/t5/Community-Office-Hours/Observability-Splunk-Observability-Cloud-Splunk-Platform-Wed-8/ec-p/690517#M103</link>
      <description>&lt;P&gt;&lt;STRONG&gt;&lt;A href="https://discover.splunk.com/Community-Office-Hours-Observability-Splunk-Observability-Cloud-Splunk-Platform.html" target="_self" rel="nofollow noreferrer"&gt;Register here&lt;/A&gt;.&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp; This thread for the Office Hours session on &lt;STRONG&gt;Splunk Observability Cloud + Splunk Platform&amp;nbsp;&lt;/STRONG&gt;&lt;/SPAN&gt;on &lt;STRONG&gt;Wed, August 14, 2024 at 1pm PT/4pm PT.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is your opportunity to ask questions related to your specific Splunk Observability Cloud + Splunk Platform challenge or use case, including:&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Sending logs from Platform to Observability Cloud with Log Observer Connect&lt;/LI&gt;&lt;LI&gt;Unified Identity (single log-in for both Platform and Observability Cloud)&lt;/LI&gt;&lt;LI&gt;Splunk Add-on for the OpenTelemetry Collector&lt;/LI&gt;&lt;LI&gt;Related Content in Splunk Cloud (adding infra and app data to logs)&lt;/LI&gt;&lt;LI&gt;Anything else you’d like to learn!&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;SPAN&gt;P&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG&gt;&lt;SPAN&gt;lease submit your questions at registration.&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;You can also head to the&amp;nbsp;&lt;A href="http://splk.it/slack" target="_blank" rel="noopener"&gt;#office-hours&lt;/A&gt;&amp;nbsp;user Slack channel to ask questions (request access&amp;nbsp;&lt;A href="http://splk.it/slack" target="_blank" rel="noopener"&gt;here&lt;/A&gt;).&lt;STRONG&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;Pre-submitted questions will be prioritized.&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;After that, we will open the floor up to live Q&amp;amp;A with meeting participants.&lt;BR /&gt;&lt;BR /&gt;Look forward to connecting!&lt;/P&gt;</description>
      <pubDate>Thu, 12 Sep 2024 17:40:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Community-Office-Hours/Observability-Splunk-Observability-Cloud-Splunk-Platform-Wed-8/ec-p/690517#M103</guid>
      <dc:creator>adepp</dc:creator>
      <dc:date>2024-09-12T17:40:45Z</dc:date>
    </item>
    <item>
      <title>Re: Observability: Splunk Observability Cloud + Splunk Platform - Wed 8/14/24</title>
      <link>https://community.splunk.com/t5/Community-Office-Hours/Observability-Splunk-Observability-Cloud-Splunk-Platform-Wed-8/ec-p/698207#M113</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Here are a few questions from the session (get the full Q&amp;amp;A deck and live recording in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;A href="https://splunk-usergroups.slack.com/archives/C0FRVF350" target="_blank" rel="noopener nofollow noreferrer"&gt;&lt;STRONG&gt;#office-hours&lt;/STRONG&gt;&lt;/A&gt;&lt;STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Slack channel)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp;What are the benefits of using Log Observer Connect? Who can use it?&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Centralize data experience between metrics, traces, logs within Splunk products&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Point and click experience&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Reach peak cloud visibility&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Get started in under 10 minutes&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Extend value of Splunk investment at no additional cost&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Available for customers using: Observability and Splunk Cloud or Splunk Enterprise&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;Documentation:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://docs.splunk.com/observability/en/logs/intro-logconnect.html" target="_blank" rel="noopener"&gt;https://docs.splunk.com/observability/en/logs/intro-logconnect.html&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2)&amp;nbsp;Does configuring/ enabling unified identity forgo the issues surrounding Log Observer Connect and a PCI Splunk Cloud Instance?&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Enabling Unified Identity forgoes the configuration process around Log Observer Connect. When a customer signs up for Unified Identity, a connection to the connected Splunk Cloud instance is made automatically and helps with RBAC (Role-based Access Control). This helps with allowing users to get access to selected indexes and/or have limits set on the number of searches that can be dispatched to the Splunk Cloud instance.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Configuring unified identity does not forgo PCI compliant issues. Observability is not PCI compliant, therefore, both Unified Identity and Log Observer Connect are not.&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;If a customer still wants to connect their PCI-compliant stack to O11y using Unified Identity or Log Observer Connect, they need to sign a consent form and the Observability backend team will add their organization to the exception list.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;3)&amp;nbsp;I'm currently using UF's for collecting log data. What are the benefits of adding the OpenTelemetry collector as a TA if I want to collect traces and metrics??&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Out of the box host metrics collection&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Deploy and monitor using the Deployment Server&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Similar lifecycle as other TAs&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;No change to log ingestion via UF&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;Documentation:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/OTC/1.3.0/manual/About" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;https://docs.splunk.com/Documentation/OTC/1.3.0/manual/About&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2024 15:06:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Community-Office-Hours/Observability-Splunk-Observability-Cloud-Splunk-Platform-Wed-8/ec-p/698207#M113</guid>
      <dc:creator>ArifV</dc:creator>
      <dc:date>2024-09-04T15:06:14Z</dc:date>
    </item>
  </channel>
</rss>

