Getting Data In

Websphere MQ from mainframe

bizza
Path Finder

Hi all,
I need to collect data from a IBM Websphere MQ where mainframe write messages.
I read something on internet and on splunk answer, and I talked with some people that already achieve it, but I found 2 different scenario.
The first one is well explained here:
http://blogs.splunk.com/2013/04/11/splunking-websphere-mq-queues-and-topics/
The second one, that people I talked about actually are using, is write a custom python script that use a IBM MQ client to write messages from MQ to a file, and Splunk use that file as input.

Which one is the most stable solutions?
Or there is any other way to do it?

Regards

0 Karma

dwaddle
SplunkTrust
SplunkTrust

The JMS app / modular input Damien mentions in his blog post is more polished/evolved than anything else available. But if necessary you can still use the WebSphere MQ Python bindings and write your own scripted (or modular) input.

The important part about WebSphere MQ is that "from a mainframe" is entirely not relevant. As long as you code to the WMQ client APIS (either JMS or another compatible API) the ultimate source of the data does not matter. Some things like message format / character sets / character encoding may be an issue but your WMQ admin will be able to give you tuning advice on these.

StephenIves
Engager

This is something we are looking into. It looks like we need to have Websphere MQ installed on the same machine as our Splunk server or can we 'point' the JMS modular input to another server where Websphere MQ is running?

0 Karma

Damien_Dallimor
Ultra Champion

Good to know , thanks for the plug dwaddle 🙂

0 Karma

bizza
Path Finder

I used the JMS app, and it works great.
Thanks for your suggestions

bizza

0 Karma

somesoni2
Revered Legend

+1 . Have similar requirement.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...