All Apps and Add-ons

Splunk Add-on for Amazon Kinesis Firehose: When to use lambda transformations?

myu_splunk
Splunk Employee
Splunk Employee

When should I use transforms via Lambda with Kinesis Firehose when sending in application data through Kinesis?

myu_splunk
Splunk Employee
Splunk Employee

You need to use a lambda transform when 1) your data is in a format that is not supported by HEC (ex: VPC flow logs), or 2) if you want to use the /events HEC endpoint for doing things like index/source/sourcetype/timestamp overriding, or 3) if you want to transform your data in any custom way before getting indexed into your Splunk deployment.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...