<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Get data from Azure Function into Splunk Enterprise in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Get-data-from-Azure-Function-into-Splunk-Enterprise/m-p/529577#M89212</link>
    <description>&lt;P&gt;I am trying to be able to get data in from an azure function one our of team's has done.&lt;/P&gt;&lt;P&gt;We are not able to get the data in through our HEC endpoints as all of those are internal to our network and the azure function sits outside of our network.&amp;nbsp; So we have gone the route of trying to have the function send into an EventHub&amp;nbsp; in Azure and then we pull the data from there.&lt;/P&gt;&lt;P&gt;using the Microsoft Azure Add-on for Splunk:&lt;/P&gt;&lt;P&gt;&lt;A href="https://splunkbase.splunk.com/app/3757/" target="_self"&gt;https://splunkbase.splunk.com/app/3757/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But it only seems to like the standard Azure diagnostic type logged data (admin/metrics).&amp;nbsp; But not any custom error logging we are sending into that EventHub.&lt;/P&gt;&lt;P&gt;I am not seeing any errors for the app saying it can't connect or anything but no luck getting the custom erro logs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the best way to get an applications custom error logs out of an Azure EventHub?&lt;/P&gt;</description>
    <pubDate>Mon, 16 Nov 2020 17:05:26 GMT</pubDate>
    <dc:creator>jeffbat</dc:creator>
    <dc:date>2020-11-16T17:05:26Z</dc:date>
    <item>
      <title>Get data from Azure Function into Splunk Enterprise</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Get-data-from-Azure-Function-into-Splunk-Enterprise/m-p/529577#M89212</link>
      <description>&lt;P&gt;I am trying to be able to get data in from an azure function one our of team's has done.&lt;/P&gt;&lt;P&gt;We are not able to get the data in through our HEC endpoints as all of those are internal to our network and the azure function sits outside of our network.&amp;nbsp; So we have gone the route of trying to have the function send into an EventHub&amp;nbsp; in Azure and then we pull the data from there.&lt;/P&gt;&lt;P&gt;using the Microsoft Azure Add-on for Splunk:&lt;/P&gt;&lt;P&gt;&lt;A href="https://splunkbase.splunk.com/app/3757/" target="_self"&gt;https://splunkbase.splunk.com/app/3757/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But it only seems to like the standard Azure diagnostic type logged data (admin/metrics).&amp;nbsp; But not any custom error logging we are sending into that EventHub.&lt;/P&gt;&lt;P&gt;I am not seeing any errors for the app saying it can't connect or anything but no luck getting the custom erro logs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the best way to get an applications custom error logs out of an Azure EventHub?&lt;/P&gt;</description>
      <pubDate>Mon, 16 Nov 2020 17:05:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Get-data-from-Azure-Function-into-Splunk-Enterprise/m-p/529577#M89212</guid>
      <dc:creator>jeffbat</dc:creator>
      <dc:date>2020-11-16T17:05:26Z</dc:date>
    </item>
  </channel>
</rss>

