<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Get Data into Splunk from Elasticsearch in Reporting</title>
    <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293873#M5445</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;What is the best way to get data into Splunk from Elasticsearch, so i can put Datamodles on to it.&lt;/P&gt;
&lt;P&gt;Thanks&lt;BR /&gt;Robert Lynch&lt;/P&gt;</description>
    <pubDate>Mon, 08 Jun 2020 23:33:01 GMT</pubDate>
    <dc:creator>robertlynch2020</dc:creator>
    <dc:date>2020-06-08T23:33:01Z</dc:date>
    <item>
      <title>Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293873#M5445</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;What is the best way to get data into Splunk from Elasticsearch, so i can put Datamodles on to it.&lt;/P&gt;
&lt;P&gt;Thanks&lt;BR /&gt;Robert Lynch&lt;/P&gt;</description>
      <pubDate>Mon, 08 Jun 2020 23:33:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293873#M5445</guid>
      <dc:creator>robertlynch2020</dc:creator>
      <dc:date>2020-06-08T23:33:01Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293874#M5446</link>
      <description>&lt;P&gt;Hi  robertlynch2020, &lt;/P&gt;

&lt;P&gt;this links might help you:&lt;BR /&gt;
&lt;A href="https://www.hurricanelabs.com/splunk-tutorials/splunk-tutorial-using-splunk-to-pull-results-from-elasticsearch"&gt;https://www.hurricanelabs.com/splunk-tutorials/splunk-tutorial-using-splunk-to-pull-results-from-elasticsearch&lt;/A&gt;&lt;BR /&gt;
&lt;A href="https://devpost.com/software/splunk-elasticsearch"&gt;https://devpost.com/software/splunk-elasticsearch&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jan 2018 10:13:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293874#M5446</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-01-11T10:13:27Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293875#M5447</link>
      <description>&lt;P&gt;hello,&lt;/P&gt;

&lt;P&gt;From what I have made :&lt;BR /&gt;
I query elasticsearch via python scripts, then I route the results to the Python script.&lt;BR /&gt;
And I deposit the script.py on the bin of my application. And there you can call it easily.&lt;/P&gt;

&lt;P&gt;Kind regards&lt;BR /&gt;
Imane El Mostaad,&lt;/P&gt;</description>
      <pubDate>Thu, 10 May 2018 13:46:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293875#M5447</guid>
      <dc:creator>consultanteIman</dc:creator>
      <dc:date>2018-05-10T13:46:41Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293876#M5448</link>
      <description>&lt;P&gt;I have used this and it works really well so far in Splunk 7.1:&lt;BR /&gt;
&lt;A href="https://github.com/brunotm/elasticsplunk"&gt;https://github.com/brunotm/elasticsplunk&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;it adds a new command  &lt;CODE&gt;ess&lt;/CODE&gt; that allows you to specify one or more nodes to search against. It provides results back using the statistics model (sorta like using db connect to query a db directly).&lt;/P&gt;</description>
      <pubDate>Tue, 10 Jul 2018 14:40:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293876#M5448</guid>
      <dc:creator>hcannon</dc:creator>
      <dc:date>2018-07-10T14:40:40Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293877#M5449</link>
      <description>&lt;P&gt;This might be helpful for anyone visiting; I have started working on an addon for Elasticsearch instances, feel free to use it!&lt;BR /&gt;
&lt;A href="https://splunkbase.splunk.com/app/4175/"&gt;https://splunkbase.splunk.com/app/4175/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Sep 2018 18:47:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293877#M5449</guid>
      <dc:creator>larmesto</dc:creator>
      <dc:date>2018-09-25T18:47:38Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293878#M5450</link>
      <description>&lt;P&gt;Hi @robertlynch2020,&lt;/P&gt;

&lt;P&gt;Check my answer here : &lt;BR /&gt;
&lt;A href="https://answers.splunk.com/answers/751469/elastic-to-splunk-migration-how-to.html?childToView=752706#answer-752706"&gt;https://answers.splunk.com/answers/751469/elastic-to-splunk-migration-how-to.html?childToView=752706#answer-752706&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Cheers,&lt;BR /&gt;
David&lt;/P&gt;</description>
      <pubDate>Sun, 16 Jun 2019 13:18:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293878#M5450</guid>
      <dc:creator>DavidHourani</dc:creator>
      <dc:date>2019-06-16T13:18:43Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293879#M5451</link>
      <description>&lt;P&gt;Hi larmesto!&lt;/P&gt;

&lt;P&gt;Is this solution  a reliable instument for data input?&lt;BR /&gt;
Like splunk dbconnect, for example.&lt;/P&gt;

&lt;P&gt;Thanks in advance.&lt;BR /&gt;
Rashid&lt;/P&gt;</description>
      <pubDate>Mon, 16 Mar 2020 10:08:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293879#M5451</guid>
      <dc:creator>highsplunker</dc:creator>
      <dc:date>2020-03-16T10:08:27Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293880#M5452</link>
      <description>&lt;P&gt;hi Imane El Mostaad,&lt;BR /&gt;
it this method OK and reliable?&lt;/P&gt;

&lt;P&gt;thanks in advance,&lt;BR /&gt;
Rashid&lt;/P&gt;</description>
      <pubDate>Mon, 16 Mar 2020 10:11:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293880#M5452</guid>
      <dc:creator>highsplunker</dc:creator>
      <dc:date>2020-03-16T10:11:56Z</dc:date>
    </item>
    <item>
      <title>Re: Get Data into Splunk from Elasticsearch</title>
      <link>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293881#M5453</link>
      <description>&lt;P&gt;Hi p_gurav!&lt;BR /&gt;
Could you please share your experience, are these 2 solutions reliable as an instument for data input?&lt;BR /&gt;
Like splunk dbconnect, for example.&lt;/P&gt;

&lt;P&gt;Thanks in advance.&lt;BR /&gt;
Rashid&lt;/P&gt;</description>
      <pubDate>Mon, 16 Mar 2020 13:42:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Get-Data-into-Splunk-from-Elasticsearch/m-p/293881#M5453</guid>
      <dc:creator>highsplunker</dc:creator>
      <dc:date>2020-03-16T13:42:11Z</dc:date>
    </item>
  </channel>
</rss>

