Splunk Dev

Implementing Splunk in Azure Functions

rallapallisagar
New Member

HI Team, we are trying to implement splunk in the azure functions .But we dont have any idea ,how to implement it. I  read we cant pass the custom logs from functions to Splunk.Can u pls helps us here with sample code and approach ?

Thanks,

R.Sagar

Labels (2)
0 Karma

Comandereric
Engager

Did you find a solution @rallapallisagar ?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Can you open with some words what you are exactly trying to do?

0 Karma

Comandereric
Engager

Sure we have some Azure functions running with C# or Java code there for we have some custom log statements they go into the Eventhub and than to Splunk but Splunk have a problem with the format which comes from the Eventhub (nested jsons) eventhough the log messages are microsoft standard...

0 Karma

isoutamo
SplunkTrust
SplunkTrust

I have used eventhub with splunk without issues e.g. with AKS and other logs. Just use https://splunkbase.splunk.com/app/3110 this app to ingest those. 

0 Karma

aasabatini
Motivator

Hi @rallapallisagar 

Ithink the best way to start to collect azure event logs is read these two articles

https://www.splunk.com/en_us/blog/tips-and-tricks/getting-microsoft-azure-data-into-splunk.html

https://www.splunk.com/en_us/blog/platform/splunking-azure-event-hubs.html

However, if these articles aren't enough, please don't hesitate to ask

Regards

Alessandro

“The answer is out there, Neo, and it’s looking for you, and it will find you if you want it to.”
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Unlock What’s Next: The Splunk Cloud Platform at .conf25

In just a few days, Boston will be buzzing as the Splunk team and thousands of community members come together ...