Getting Data In

Does Splunk have a mechanism to read logs from Cloud Object Storage?

olavo123
Explorer

Hello,

We have been using a cloud provider to host some of our instances and the logs are being stored in containers using Object Storage. Does Splunk have a mechanism to read logs from object storage ? Maybe using some API which works over SSL?

Any inputs will be appreciated.

Thanks so much.

-Olavo

Tags (4)
0 Karma

nkwong_splunk
Splunk Employee
Splunk Employee

If the object storage service you are referring to is AWS S3, then the Splunk App for AWS v4 (https://splunkbase.splunk.com/app/1274/) has an easy to use data input for S3 buckets. Here are the instructions on how to setup a S3 data input for the Splunk App for AWS.

http://docs.splunk.com/Documentation/AWS/latest/Installation/S3

0 Karma

halr9000
Motivator

Can you be more specific? What cloud? What object storage system? The details matter.

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...