Deployment Architecture

Can I use Splunk Enterprise Add on as log management tool for Azure Websites (AppService)?

Obula
New Member

Hello,

I am hosting a website in Azure Platform as a Service(PaaS).

I am using Azure AppService to host my website and a Linux VM hosting MySQL database and connected both.

What I am planning to do is integrate logs (Application, web server, Azure Activity logs, MySQL logs) and monitor them.

Is it possible to achieve this using Splunk enterprise?

Thanks

0 Karma

jconger
Splunk Employee
Splunk Employee

For this scenario, you can use the Splunk Add-on for Microsoft Cloud Services (a.k.a. MSCS) to pull in the data from the various components listed. Azure Websites expose data via an Azure Blob, and the MSCS add-on can pull in the data written there. For the Linux VMs, you can install a Universal Forwarder, or you can enable diagnostics within Azure and have Splunk pick up the diagnostic data. The MSCS add-on can also pick up the Azure Activity logs (a.k.a. Azure Audit logs).

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In November, the Splunk Threat Research Team had one release of new security content via the Enterprise ...

Index This | Divide 100 by half. What do you get?

November 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...

Stay Connected: Your Guide to December Tech Talks, Office Hours, and Webinars!

❄️ Celebrate the season with our December lineup of Community Office Hours, Tech Talks, and Webinars! ...