Getting Data In

Ingest Claude OpenTelemetry logs

becksyboy1
Engager

Hi All,

Has anyone tried to ingest Claude OpenTelemetry logs into Splunk? I'd be interested in understanding what approach was taken.

 

thanks

 

 

Labels (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust
I need to add here that now we are talking about use of O11y not traditional SCP or Enterprise stacks.
0 Karma

becksyboy1
Engager

Thanks, yep I did see some info around this but not this link, i will take a look.

0 Karma

kknairr
Contributor

@becksyboy1 No worries, let us know how it goes. The below Claude documentation on enabling and configuring OpenTelemetry for Claude Code might as well help to setup.

Monitoring - Claude Code Docs

>>

If this post addressed your question, you can:

  • Give it karma to show appreciation 👍
  • Mark it as the solution if it solved your issue ✔️ 
  • Add a comment if you’d like more details ✏️

Acknowledging helpful answers keeps the community strong and motivates contributors to continue sharing their expertise.

>>

0 Karma

kknairr
Contributor

@becksyboy1 There is no Claude-specific TA in Splunkbase, but the Splunk Distribution of OpenTelemetry Collector could be the official supported path. You can configure the collector to receive Claude’s OTLP logs and forward them into Splunk via HEC. 

Ref: Get started with the Splunk Distribution of the OpenTelemetry Collector | Observability Cloud (last ...

>>

If this post addressed your question, you can:

  • Give it karma to show appreciation 👍
  • Mark it as the solution if it solved your issue ✔️
  • Add a comment if you’d like more details ✏️

Acknowledging helpful answers keeps the community strong and motivates contributors to continue sharing their expertise.

>>

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...