#Random
This is a place to discuss all things outside of Splunk, its products, and its use cases.

Does Observability Cloud still accept logs being sent to it directly by the Splunk Otel Collector?

PsychicMushroom
New Member

Hi guys,

Does anyone know even with the Trial version of Splunk Observability Cloud whether it still accepts logs being sent to it directly by the Splunk Otel Collector?       

According to  this page  : https://docs.splunk.com/observability/en/gdi/opentelemetry/components/splunk-hec-exporter.html , it says:

"Caution - Splunk Log Observer is no longer available for new users. You can continue to use Log Observer if you already have an entitlement."      

As I'm using the Trial version,  I'm just curious to see how Observability Cloud processes logs via fluentd, rather than use Log Observer Connect which uses the Universal Forwarder to send logs to Splunk Cloud/Enterprise first, and then  Observability Cloud  just views log events via the integration.  Seems that Observability Cloud is not showing  the ordinary syslog or windows events which get sent to it  automatically out of the box by the  Splunk Otel Collector. Tried setting up my own log file, but nothing shows up in O11y either.

Labels (1)
0 Karma

PaulPanther
Motivator

O11Y does not accept any logs anymore that are sent directly to the O11Y endpoints. The only way is to send the logs to Splunk Enterprise and then use Log Observer Connect.

0 Karma

PsychicMushroom
New Member

Thanks for the reply.  Cheers.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In January, the Splunk Threat Research Team had one release of new security content via the Splunk ES Content ...

Expert Tips from Splunk Professional Services, Ensuring Compliance, and More New ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Observability Release Update: AI Assistant, AppD + Observability Cloud Integrations & ...

This month’s releases across the Splunk Observability portfolio deliver earlier detection and faster ...