Splunk Cloud Platform

Send data via UDP to Splunk Cloud

Vip_Mark
Explorer

Hello,

I am currently sending data to my Splunk Server via UDP. I am looking to migrate to Splunk Cloud, so I got the Splunk Cloud Free Trial. I noticed that in Splunk Cloud there is currently no way to create a UDP listener to accept my data. What is the work around this? 

-Marco

 

Labels (3)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Splunk Cloud supports neither UDP nor TCP inputs.  You'll have to stand up an on-prem heavy forwarder to receive the UDP inputs and forward them to Splunk Cloud.

---
If this reply helps you, Karma would be appreciated.

rahusri2
Path Finder

Hello,

Can you please help to let me know what are the steps need to followed to do so?

Thanks

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

the preferred method is set up syslog server (rsyslog or syslog-ng) or use SC4C to get logs from syslog sources and then send those logs from it by UF or in SC4C case it sends those via HEC to your cloud instance.

r. Ismo

richgalloway
SplunkTrust
SplunkTrust

See the Getting Data In manual.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

What the End of Support for Splunk Add-on Builder Means for You

Hello Splunk Community! We want to share an important update regarding the future of the Splunk Add-on Builder ...

Solve, Learn, Repeat: New Puzzle Channel Now Live

Welcome to the Splunk Puzzle PlaygroundIf you are anything like me, you love to solve problems, and what ...

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...