Getting Data In

Splunk docker image including an app

damaru_inc
Engager

Hi,

I'm new to Splunk. I got the docker image from https://hub.docker.com/r/splunk/splunk/ and it's working fine.

I manually added the rfc5425-syslog app, through the web console.

I want to write a Dockerfile to create an image that already has that app installed. There must be some command I can run from within the container that installs an app from a provided tarball - any idea what that might be?

thanks
Michael Davis
Ottawa

Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...