Getting Data In

Splunk Integration

devraajpandya11
New Member

How do i integrate my website hosted on AWS(ec2) with splunk?

Labels (4)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Depends on what do you want to "integrate". Do you want to collect events generated by your web app/web server? Do you want to collect metrics about your server? Do you want to embed reports from Splunk on your website? Do you want to be able to perform some action on your Splunk environment from your web app? Something else?

0 Karma

apietsch
Splunk Employee
Splunk Employee

Just collecting the logs is a great start.

If you want to collect technical metrics about user interaction you can use the RUM integration as well.

And depending what your backend looks like you could use the opensource OpenTelemetry libraries to instrument your backend application that processes your web application data. There is even a free and opensource Splunk distribution of OpenTelemetry (including the collector) available. 

---------------------
Chaos Smoother | Data Wrangler
0 Karma

deepakc
Builder

At a high Level:

 

  1. Think about what data you want from your website, is it OS logs Application logs, Security Logs etc and identify them.
  2. For those logs you want is there a Splunk TA - Search on Splunk Base. (This will help with the data integration and parse the data).
  3. Install a Universal Forwarder onto the Web Hosted Servers and monitor the logs or other methods are API and Splunk HEC.
  4. You may even have to use a Heavy Forwarder to collect the logs - this depends on the logs/data you want and your Splunk architecture.
0 Karma
Get Updates on the Splunk Community!

Exporting Splunk Apps

Join us on Monday, October 21 at 11 am PT | 2 pm ET!With the app export functionality, app developers and ...

Cisco Use Cases, ITSI Best Practices, and More New Articles from Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Build Your First SPL2 App!

Watch the recording now!.Do you want to SPL™, too? SPL2, Splunk's next-generation data search and preparation ...