Getting Data In

Splunk Integration

devraajpandya11
New Member

How do i integrate my website hosted on AWS(ec2) with splunk?

Labels (4)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Depends on what do you want to "integrate". Do you want to collect events generated by your web app/web server? Do you want to collect metrics about your server? Do you want to embed reports from Splunk on your website? Do you want to be able to perform some action on your Splunk environment from your web app? Something else?

0 Karma

apietsch
Splunk Employee
Splunk Employee

Just collecting the logs is a great start.

If you want to collect technical metrics about user interaction you can use the RUM integration as well.

And depending what your backend looks like you could use the opensource OpenTelemetry libraries to instrument your backend application that processes your web application data. There is even a free and opensource Splunk distribution of OpenTelemetry (including the collector) available. 

---------------------
Chaos Smoother | Data Wrangler
0 Karma

deepakc
Builder

At a high Level:

 

  1. Think about what data you want from your website, is it OS logs Application logs, Security Logs etc and identify them.
  2. For those logs you want is there a Splunk TA - Search on Splunk Base. (This will help with the data integration and parse the data).
  3. Install a Universal Forwarder onto the Web Hosted Servers and monitor the logs or other methods are API and Splunk HEC.
  4. You may even have to use a Heavy Forwarder to collect the logs - this depends on the logs/data you want and your Splunk architecture.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...