Knowledge Management

Is there a Sample Data On-Boarding Document Template I am looking for ideas from Splunk users who provide services of Splunk to their internal customers in the organization?

uvmk61
New Member

I am looking for ideas from Splunk users who provide services of Splunk to their internal customers in the organization.

Do you have/can you share an on-boarding form/document/excel template that covers input parameters needed for -
- simple log on-boarding
- DB Connect
- HTTP Event Collector
- or any other apps.

With this document, you will have persistent on-boarding data that you get from your internal customers.
Thank you in advance!

0 Karma

valiquet
Contributor

-Data Gov (is it usefull, what is the coast)
-Writing to twiki SMEs, Owner, etc
-Sending sample data
-Chosing index, sourcetype, entitlements
-Applying best practice to onboard
-Pushing to prod
-Monitoring

File monitoring is the easiest and very good. HTTP collector is good but not as mature. If possible stay away from syslog unless you know what you are doing

Feel free to ask details

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...