Getting Data In

What is meant by Splunk integration?

Mohsin123
Path Finder

Hi,

what do you mean by integrating and application with Splunk and what are the steps?

0 Karma
1 Solution

tmarlette
Motivator

This is an extremely broad question, but I might be able to point you in the right direction.

Integrating an application with Splunk:

Integration generally consists of data on-boarding, data cleaning / parsing, and then dashboard creation.

  • first you need to get data from your application into Splunk
  • next, you'll need to clean that data so it makes sense, creating fields, events, transforms, etc..
  • finally, you'll be able to create dashboards showing your application / system within Splunk.

For each of these stages you'll need to understand the data you're looking at, as well as what the final goal is supposed to look like.
Also, for each of these stages, these short sentences do not encompass the entirety of work that goes into 'integration'.

It sounds like you're pretty new to Splunk, so your best bet is to get some education, or begin with a system that already has an app on splunkbase that's easy. This way you don't have to create everything from scratch, and you can start tinkering.

View solution in original post

desoto-chan
Explorer

as already mentioned, it's a broad question. by definition, integration is the process of bringing together the component sub-systems into one system. so you'll link(connect) splunk with other systems (like snow, jira sm, bmc, and others). that's at least what we do. depends on the use case. for our last customer, we integrated splunk with datadog via an external tool. it took few steps & happened in no time.

0 Karma

tmarlette
Motivator

This is an extremely broad question, but I might be able to point you in the right direction.

Integrating an application with Splunk:

Integration generally consists of data on-boarding, data cleaning / parsing, and then dashboard creation.

  • first you need to get data from your application into Splunk
  • next, you'll need to clean that data so it makes sense, creating fields, events, transforms, etc..
  • finally, you'll be able to create dashboards showing your application / system within Splunk.

For each of these stages you'll need to understand the data you're looking at, as well as what the final goal is supposed to look like.
Also, for each of these stages, these short sentences do not encompass the entirety of work that goes into 'integration'.

It sounds like you're pretty new to Splunk, so your best bet is to get some education, or begin with a system that already has an app on splunkbase that's easy. This way you don't have to create everything from scratch, and you can start tinkering.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Index This | What travels the world but is also stuck in place?

April 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Discover New Use Cases: Unlock Greater Value from Your Existing Splunk Data

Realizing the full potential of your Splunk investment requires more than just understanding current usage; it ...

Continue Your Journey: Join Session 2 of the Data Management and Federation Bootcamp ...

As data volumes continue to grow and environments become more distributed, managing and optimizing data ...