Getting Data In

Get logs for G Suite

splunkcol
Builder

 

Hello,

My client requests to ingest G Suite logs, when searching I see several APPs which do not have Splunk support.

Question 1:
What should I understand when an APP does not have Splunk support?

Question 2:
What is the best way to ingest the GSuite logs?

 

https://splunkbase.splunk.com/app/3793/ or https://splunkbase.splunk.com/app/4560/ or https://splunkbase.splunk.com/apps/#/search/G%20Suite/

 

0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @splunkcol 

I guess you should be looking for Google Workspace as Gsuite has been renamed. It depends what you want to ingest to Splunk and add-on supporting those logs to be ingested - Splunk Add-on For Google Workspace | Splunkbase this is a splunk supported add-on which i see doc link is broken you have to reachout splunk support for correct link and do a search to find out.

Non Splunk supported add-ons are mostly being developed by Individual developers they usually support it if you contact them in case of any issues with add-on and licensing terms vary free vs paid etc etc you have to read it.

Splunk supported add-ons you can reach out to Splunk support that's the difference in terms of support. Most of the add-ons are free unless there are premium you can find in splunkbase.

---

An upvote would be appreciated and Accept solution if this reply helps!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...