Watch On-Demand. This thread is for the Community Office Hours session on Splunk Infrastructure Monitoring on Tues, June 17, 2025 at 1pm PT / 4pm ET.
Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics.
What can I ask in this AMA?
- What are some enhancements to the Kubernetes Monitoring experience in Splunk IM?
- How do I use and customize Kubernetes navigators?
- What are best practices for optimizing Kubernetes alerts and troubleshooting workflows?
- Is there a way to view Kubernetes logs correlated with metrics?
- What are some top services that I should be monitoring?
- Anything else you'd like to learn about!
Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here).
Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants.
Look forward to connecting!
Hello! Here are the recap materials from the session:
And here are the questions we received (there are supplemental slides for each of these solutions in the deck)
Q1: What are some unique advantages of Splunk IM?
Real time, OTel Native, AI-Assisted, End-to-End Correlation, all at Enterprise Scale (see additional slides in deck)
Documentation:
Q2: What is related content?
A: The Related Content panel in Splunk Observability Cloud automatically correlates and presents data between different views within Splunk Observability Cloud (see add'l slides in deck)
Documentation:
Q3: How can I send metrics to Splunk IM?
A: With OpenTelemetry Collector, Cloud APIs, REST APIs (see add'l slides in deck)
Documentation:
Q4: How to manage log ingestion made by fluent, like we do with Splunk universal forwarder and props?
A: You can deploy an Otel Collector with a fluentforward receiver and export to Splunk HEC endpoint
Documentation:
Q5: Is IM only for Kubernetes? What if I want to monitor servers and apps hosted in AWS via IM?
A: With Splunk IM you can get metrics from hosts and containers on-prem or in the cloud (AWS, Azure, GCP) and services running on them like K8s, message brokers, web servers, DBs etc
You can send infrastructure metrics to Splunk IM:
Documentation