Getting Data In

Solar winds to splunk cloud integration

Shiva
New Member

Hi Every1,

Need help on how to integrate solarwinds to splunk cloud  or splunk enterprise ? As I seen addon is not support by splunk support. Suggest best possible ways !!

0 Karma

deepakc
Builder

If the app is not supported, you could still use it, but that's a risk you have to take. 

Other options are, look at the Solarwind application and find out what methods does it offer in terms of sending data to other systems, this could be syslog, logs files, API, once you understand this, you need to look at the options you have in Splunk, so look at using a Universal forwarder with syslog file collection, or use the UF to collect logs files, or send data from the Solarwinds app to a Splunk HEC endpoint.

After this you can develop your TA to work on the props and transforms to format the data, into Splunk events.

Also try and understand the data you want, example, is it alerts, inventory, etc.   

 

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...