Monitoring Splunk

Would there be any cost involved from Azure if we pull logs from Azure to Splunk?

anandhalagaras1
Contributor

Hi All,
We are using the Microsoft Cloud Services Add-On for Splunk to integrate and ingest the logs from Azure Storage Table and Azure Storage Blob and already we have ingested data from Azure Storage Table and Blob into our Splunk successfully. But i have a doubt, so once the logs are getting ingested into Splunk then it would be tracked on how much GB we are ingesting into Splunk on daily basis and it will calculated in daily licensing for Splunk. But actually we are pulling the logs from Azure Storage Table and Blob so would there be any cost involved from Azure front if we pull the logs from Azure to Splunk?

 

And if it is yes then how much azure would be charging for the log ingestion into Splunk. If we have useful links to check on the same if then kindly share as well.

Labels (1)
0 Karma

mlmcadams
Engager

Last time I reviewed this function with Azure cloud,  I saw the cost was when the Azure Event Hubs were used.  The problem is Microsoft changes their service quite a bit and there still might be a charge without using the hubs.   It is very worth it asking your Microsoft account representative team to be fully sure.  

Hope this helps.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

some months ago I found these links:

https://azure.microsoft.com/en-us/pricing/details/azure-firewall/

https://azure.microsoft.com/en-us/pricing/details/private-link/

https://azure.microsoft.com/en-us/pricing/details/frontdoor/

I don't know if they are the ones you  are searching, but the location is the correct one.

Ciao.

Giuseppe

 

0 Karma

anandhalagaras1
Contributor

@gcusello Thanks for your response.

So when i checked the links provided  I can able to see some information that is if i pull the logs from Azure Storage Table or Blob using Microsoft Cloud Services Add-On then there would be a some cost involved from Azure end.  Correct me if i am wrong?

 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

the costs are from Azure side, not from Splunk side: in Splunk you pay only the indexed logs.

Ciao.

Giuseppe

0 Karma

anandhalagaras1
Contributor

@gcusello ,  Thanks for your response.

And i am already aware of it. i.e. From Splunk we pay for indexed log and it will be calculated on daily usage but i just want to whether cost would be involved from Azure side or not. 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

if I correctly remember there's a little fee to pay.

Ciao.

giuseppe

0 Karma
Get Updates on the Splunk Community!

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...