Monitoring Splunk

Splunk Cloud backup and recovery

Scottk1
Loves-to-Learn Lots

Client is asking about Splunk Cloud backup and recovery procedure for DR. Specifically all the configuration, searched, dashboards, fields, tag so on and so on. I can not find a document outlining Splunk cloud polices for high availability, backup and restore can anyone point to this info?  

 

Client ask - 

"Could you please check and let me know how and where following items are backed up and what is the process to recover them for DR purpose?

    • Audit logs
    • Usecases
    • Reports, alerts, lookup tables, KV etc
    • Config data
    • Source type config
    • Parsing
    • API, TI
    • Fields config
    • Data model, macros
    • Apps and app config
    • ES config
    • Threat intel config"
Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...