Alerting

Consume alerts from a tool into splunk

Roy_9
Motivator

Hello All,

I have a use case to consume alerts from a tool called dataminr into splunk.

Can someone suggest us the best approach for this integration?

 

 

Thanks

Labels (3)
0 Karma
1 Solution

Roy_9
Motivator

HEC supports streaming the logs from ELK server to splunk, As an example you could use logstash for this.

View solution in original post

0 Karma

skrajkumar_splu
Splunk Employee
Splunk Employee

Yes, you can very well send data via HEC to Splunk Cloud. Pls refer the below doc for the steps.

 

https://docs.splunk.com/Documentation/SplunkCloud/8.2.2109/Data/UsetheHTTPEventCollector

 

0 Karma

skrajkumar_splu
Splunk Employee
Splunk Employee

Hi @Roy_9 ,

  Check if Dataminr supports extracting alert information via REST API. If so then you can easily build an add-on to ingest data into Splunk via Splunk's "Add-on Builder". And you can schedule it to fetch alert info from Dataminr periodically.

 

https://docs.splunk.com/Documentation/AddonBuilder/4.0.0/UserGuide/ConfigureDataCollection

 

Roy_9
Motivator

Hi @skrajkumar_splu 

Thanks for the response, I have one more question regarding streaming logs/alerts on an  ELK search server into Splunk, Can we try the HEC route to stream these from ELK to Splunk cloud?

 

 

Thanks

0 Karma

Roy_9
Motivator

HEC supports streaming the logs from ELK server to splunk, As an example you could use logstash for this.

0 Karma
Get Updates on the Splunk Community!

🌟 From Audit Chaos to Clarity: Welcoming Audit Trail v2

🗣 You Spoke, We Listened  Audit Trail v2 wasn’t written in isolation—it was shaped by your voices.  In ...

What's New in Splunk Observability - October 2025

What’s New?    We’re excited to announce the latest enhancements to Splunk Observability Cloud and share ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...