Getting Data In

Solar winds to splunk cloud integration

Shiva
New Member

Hi Every1,

Need help on how to integrate solarwinds to splunk cloud  or splunk enterprise ? As I seen addon is not support by splunk support. Suggest best possible ways !!

0 Karma

deepakc
Builder

If the app is not supported, you could still use it, but that's a risk you have to take. 

Other options are, look at the Solarwind application and find out what methods does it offer in terms of sending data to other systems, this could be syslog, logs files, API, once you understand this, you need to look at the options you have in Splunk, so look at using a Universal forwarder with syslog file collection, or use the UF to collect logs files, or send data from the Solarwinds app to a Splunk HEC endpoint.

After this you can develop your TA to work on the props and transforms to format the data, into Splunk events.

Also try and understand the data you want, example, is it alerts, inventory, etc.   

 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...