Alerting

What is ingestion in Splunk?

karthi2809
Builder

Thanks in Advance.

I had call from one company and they asked you have experience in Splunk Ingestion. I thought is data onboarding from GUI right? or something different?

Labels (1)
Tags (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @karthi2809,

I suppose that they mean getting data in and parsing, in other words the process to have data to index and use.

e.g. if you read at https://docs.splunk.com/observability/en/gdi/other-ingestion-methods/other-data-ingestion-methods.ht... they are speaking of methods to get data in.

Ciao.

Giuseppe

 

isoutamo
SplunkTrust
SplunkTrust
0 Karma
Get Updates on the Splunk Community!

What the End of Support for Splunk Add-on Builder Means for You

Hello Splunk Community! We want to share an important update regarding the future of the Splunk Add-on Builder ...

Solve, Learn, Repeat: New Puzzle Channel Now Live

Welcome to the Splunk Puzzle PlaygroundIf you are anything like me, you love to solve problems, and what ...

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...