Splunk Cloud Platform

Keycloak Splunk Cloud capability

Alan_Chan
Explorer

I want to receive Keycloak logs in the Splunk Cloud platform. I found Keycloak apps in Splunkbase, but they seem to be unavailable in Splunk Cloud. Are there any methods to receive Keycloak logs in Splunk Cloud?

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @Alan_Chan ,

I don't know Keycloak but surely ingestion is done using scripts that use APIs that aren't acceptable on Splunk Cloud.

You have onely one solution: install an on-premise Heavy forwarder connected to Splunk Cloud and on it install and configure the Add-On.

Ciao.

Giuseppe

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...