Getting Data In

Splunk docker image including an app

damaru_inc
Engager

Hi,

I'm new to Splunk. I got the docker image from https://hub.docker.com/r/splunk/splunk/ and it's working fine.

I manually added the rfc5425-syslog app, through the web console.

I want to write a Dockerfile to create an image that already has that app installed. There must be some command I can run from within the container that installs an app from a provided tarball - any idea what that might be?

thanks
Michael Davis
Ottawa

Get Updates on the Splunk Community!

Developer Spotlight with Brett Adams

In our third Spotlight feature, we're excited to shine a light on Brett—a Splunk consultant, innovative ...

Index This | What can you do to make 55,555 equal 500?

April 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...

Say goodbye to manually analyzing phishing and malware threats with Splunk Attack ...

In today’s evolving threat landscape, we understand you’re constantly bombarded with phishing and malware ...