Getting Data In

Custom Attribute Retrieval in VMware App (Add-on for VMware Metrics)

CharlyB
Engager
Assistance with Custom Attribute Retrieval in VMware App for Splunk
Hello everyone,
I'm currently working on integrating custom attributes from VMware into Splunk ITSI using the Splunk Add-on for VMware Metrics.
The standard functionality of the add-on doesn't seem to support custom attribute retrieval out-of-the-box and I need a "TechnicalService" custom attribute for an entity split.

To tackle this, I am looking into extending the existing add-on scripts, particularly focusing on the CustomFieldsManager within the VMware API.

I've explored the inventory_handlers.py, inventory.py, and mo.py scripts within the add-on and found a potential pathway through the CustomFieldsManager class in mo.py.
However, I'd appreciate any insights or guidance from those who have tackled similar integrations or extensions.

Specifically, I'm interested in:
  1. Best practices for extending the add-on to include custom attributes without affecting its core functionalities.
  2. Any known challenges or pitfalls in modifying these scripts for custom attribute integration.
  3. Advice on testing and validation to ensure stable and efficient operation post-modification.
I'm open to suggestions, alternative approaches, or any resources that might be helpful in this context.

Thank you in advance for your assistance and insights!
kind regards,
Charly
Labels (2)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...