All Apps and Add-ons

Why is Elastic Search Integrator App not Working?

Hariprasadd90
New Member

Hi,

I recently installed the elastic data integrator app for migrating data from elk server to splunk. After adding input option and enabling the modulator, no data is received on splunk. Is there anything additional that needs to be done while installing the modulator or there in input options. My project desires to obtain raw data from elk to splunk. I am also new to splunk. Any help will be much appreciated. I am also attaching screenshots depicting my problem.

Thanking You

Hari

1.JPG2.JPG3.JPG

Tags (1)
0 Karma

splunkreal
Motivator

Hello,

has this been solved?

Thanks.

* If this helps, please upvote or accept solution if it solved *
0 Karma

yossieven
New Member

Hi,

I would like some help on this issue as well.

I didn't manage to make it work either.

0 Karma

whoccc
Observer

I try that the app is work but have some issues such as cannot collect all data during a period that may related to data size in elk.

finally, I use api connection to get the data as a csv and use Splunk to collect the data.

0 Karma
Get Updates on the Splunk Community!

Splunk Search APIを使えば調査過程が残せます

   このゲストブログは、JCOM株式会社の情報セキュリティ本部・専任部長である渡辺慎太郎氏によって執筆されました。 Note: This article is published in both Japanese ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...