All Apps and Add-ons

Kenesis Firehose and Splunk HECs

sjsoto
Observer

Does the use of HECs require traversing the public internet to get data into Splunk? Example, if my customer was the government and the data passed through Firehose into Splunk is to not touch the internet. 

Labels (1)
0 Karma

dmacintosh_splu
Splunk Employee
Splunk Employee

I think there are some more questions that need to be asked around the requirements. Splunk Enterprise(if so, hosted where?) or Splunk Cloud? If it is Splunk Cloud, I imagine FedRAMP/GovCloud might be required?

In either case, I believe that the data stream from Firehose to Splunk is encrypted if configured properly, whether it traverses the public internet is another question.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...