Getting Data In

Integrating and Ingesting Atlassian Audit Logs into Splunk?

anandhalagaras1
Contributor

Based on the article provided below we have updated our Atlassian settings to pull the Bitbucket logs into our Audit Logs hence we want to how can get them ingested into Splunk.

So do we any specific add-on to get this audit logs pulled and ingested into Splunk? Or how do we get them integrated and get them ingested into Splunk.

Article:

https://bitbucket.org/blog/bitbucket-audit-logs-are-now-available-in-atlassian-access

https://support.atlassian.com/security-and-access-policies/docs/track-organization-activities-from-t...

So can anyone help me on this requirement.

Labels (1)
0 Karma

Brett
SplunkTrust
SplunkTrust

I just built an app to do this: https://splunkbase.splunk.com/app/7371

BrianH
New Member

Brett - do you have any further guidance on making this app (7371) work?  We are trying to ingest Atlassian logs from a trusted partner to our Splunk.  They pointed us to APP 7371, we installed.  But don't see any options for configuration?  Not like we're used to with other apps, anyway.  No "input" tab, no "configuration" tab, no "proxy" tab.   We get one page with 'name', 'update checking', 'visible' and 'upload asset' .  nothing else.  no place to enter the API key they sent us, nowhere to enter file path.  Nothing.  At this point we have the app installed but no idea how to get the logs to come over.

0 Karma

anandhalagaras1
Contributor

Can anyone help on this requirement? Can we able to pull the logs using HTTP Event Collector method?

Kindly check and update.

0 Karma

anandhalagaras1
Contributor

Can anyone help on the requirement. On how to pull the Audit logs into Splunk.

Link from Atlassian for reference:

https://developer.atlassian.com/cloud/admin/organization/rest/api-group-events/

0 Karma
Get Updates on the Splunk Community!

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...

Brains, Bytes, and Boston: Learn from the Best at .conf25

When you think of Boston, you might picture colonial charm, world-class universities, or even the crack of a ...