Monitoring Splunk

Would there be any cost involved from Azure if we pull logs from Azure to Splunk?

anandhalagaras1
Contributor

Hi All,
We are using the Microsoft Cloud Services Add-On for Splunk to integrate and ingest the logs from Azure Storage Table and Azure Storage Blob and already we have ingested data from Azure Storage Table and Blob into our Splunk successfully. But i have a doubt, so once the logs are getting ingested into Splunk then it would be tracked on how much GB we are ingesting into Splunk on daily basis and it will calculated in daily licensing for Splunk. But actually we are pulling the logs from Azure Storage Table and Blob so would there be any cost involved from Azure front if we pull the logs from Azure to Splunk?

 

And if it is yes then how much azure would be charging for the log ingestion into Splunk. If we have useful links to check on the same if then kindly share as well.

Labels (1)
0 Karma

mlmcadams
Engager

Last time I reviewed this function with Azure cloud,  I saw the cost was when the Azure Event Hubs were used.  The problem is Microsoft changes their service quite a bit and there still might be a charge without using the hubs.   It is very worth it asking your Microsoft account representative team to be fully sure.  

Hope this helps.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

some months ago I found these links:

https://azure.microsoft.com/en-us/pricing/details/azure-firewall/

https://azure.microsoft.com/en-us/pricing/details/private-link/

https://azure.microsoft.com/en-us/pricing/details/frontdoor/

I don't know if they are the ones you  are searching, but the location is the correct one.

Ciao.

Giuseppe

 

0 Karma

anandhalagaras1
Contributor

@gcusello Thanks for your response.

So when i checked the links provided  I can able to see some information that is if i pull the logs from Azure Storage Table or Blob using Microsoft Cloud Services Add-On then there would be a some cost involved from Azure end.  Correct me if i am wrong?

 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

the costs are from Azure side, not from Splunk side: in Splunk you pay only the indexed logs.

Ciao.

Giuseppe

0 Karma

anandhalagaras1
Contributor

@gcusello ,  Thanks for your response.

And i am already aware of it. i.e. From Splunk we pay for indexed log and it will be calculated on daily usage but i just want to whether cost would be involved from Azure side or not. 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anandhalagaras1,

if I correctly remember there's a little fee to pay.

Ciao.

giuseppe

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Level Up Your .conf25: Splunk Arcade Comes to Boston

With .conf25 right around the corner in Boston, there’s a lot to look forward to — inspiring keynotes, ...

Manual Instrumentation with Splunk Observability Cloud: How to Instrument Frontend ...

Although it might seem daunting, as we’ve seen in this series, manual instrumentation can be straightforward ...

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

 Are you ready to revolutionize your IT operations? As digital transformation accelerates, the demand for ...