Getting Data In

coldToFrozen Azure blob storage account

morphis72
Path Finder

I have a distributed Splunk environment running in Azure IaaS. I need to start rolling my cold data off to archive and it looks like our best option is going to be blob storage. I have found plenty of information on how to do this if it was AWS and S3 however, Microsoft Azure's blob doesn't support S3.

I have found a tool called AZcopy that looks like it might be part of the puzzle?

Is anyone currently doing this and if so do you have a script you could sanitize and let me look at to get a starting point?

0 Karma

hernanrodriguez
Explorer

Hi @morphis72 

Also I have Splunk Enterprise deployed as IaaS on Azure. How did you resolve your problem? T

There're a lot of information about Splunk and S3 on AWS, but sadly not for Blob Storage & Azure

 

 

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...