All Apps and Add-ons

Splunk Connect for Kafka how to

jbanAtSplunk
Communicator

Hi,

I dont have any exp with Kafka but we need to send data from Kafka to Splunk.

I am reading documentation but dont understand what we need to do.

Ok, HEC on Splunk and configure HEC options. But what with .jar (or how to build Docker). Do we need to "build .jar" and than put it into Kafka plugin folder or is there some way that we build connector that will connect to Kafka (like for example Redis or RabbitMQ, like middleware).

Tnx. any help is appreciated.

Labels (2)
0 Karma

ilya_resh
Engager

@jbanAtSplunk , There is a good quick explanation by @daniel_splunk here https://community.splunk.com/t5/All-Apps-and-Add-ons/Any-quick-startup-guide-to-do-end-to-end-testin...

I've also started "putting on paper" my journey with Splunk Connect for Kafka here: http://isbyr.com/splunk-connect-for-kafka/ still work in progress, but might help a bit (though nothing about docker, as I was using "plain" VMs)

0 Karma

jbanAtSplunk
Communicator

Tnx. for replay (will have an eye on provided links 🙂 ).

I solved this with logstash as it have Kafka Input plugin so it's straight forward with kafka input and then output  json (to file) and read file with Splunk Universal forwarder.

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...