All Apps and Add-ons

Does Splunk enterprise support Apache Ambari? Is so, in what way can I configure it?

anoopmudholkar
New Member

I am trying to find out relation of ambari with various log management frameworks.

Tags (1)
0 Karma

hgehrts_splunk
Splunk Employee
Splunk Employee

Hi

What do you mean by "support"? Are you looking after how to monitor Ambari? Or how to splunk a Hadoop Cluster through Ambari?
Ambari is an Management Tool for hadoop. You could compare it with an element manger: it allows you to install, configure and monitor Hadoop Cluster.
The monitoring portion is quite open, it allows you to send the metrics data into a file system (where you could pick up the data via forwarder) or you use the REST API (and the Splunk Addon Builder) to pull the data into Splunk. The logs can be integrated with a forwarder:
https://ambari.apache.org/1.2.1/installing-hadoop-using-ambari/content/ambari-chap5-1.html

There are more options... but what is it what you want to achieve? Of course you could just splunk everything.

0 Karma
Get Updates on the Splunk Community!

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...