Splunk Dev

Implementing Splunk in Azure Functions

rallapallisagar
New Member

HI Team, we are trying to implement splunk in the azure functions .But we dont have any idea ,how to implement it. I  read we cant pass the custom logs from functions to Splunk.Can u pls helps us here with sample code and approach ?

Thanks,

R.Sagar

Labels (2)
0 Karma

Comandereric
Engager

Did you find a solution @rallapallisagar ?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Can you open with some words what you are exactly trying to do?

0 Karma

Comandereric
Engager

Sure we have some Azure functions running with C# or Java code there for we have some custom log statements they go into the Eventhub and than to Splunk but Splunk have a problem with the format which comes from the Eventhub (nested jsons) eventhough the log messages are microsoft standard...

0 Karma

isoutamo
SplunkTrust
SplunkTrust

I have used eventhub with splunk without issues e.g. with AKS and other logs. Just use https://splunkbase.splunk.com/app/3110 this app to ingest those. 

0 Karma

aasabatini
Motivator

Hi @rallapallisagar 

Ithink the best way to start to collect azure event logs is read these two articles

https://www.splunk.com/en_us/blog/tips-and-tricks/getting-microsoft-azure-data-into-splunk.html

https://www.splunk.com/en_us/blog/platform/splunking-azure-event-hubs.html

However, if these articles aren't enough, please don't hesitate to ask

Regards

Alessandro

“The answer is out there, Neo, and it’s looking for you, and it will find you if you want it to.”
0 Karma
Get Updates on the Splunk Community!

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...

What’s New in Splunk Observability Cloud: January Feature Highlights & Deep Dives

Splunk Observability Cloud continues to evolve, empowering engineering and operations teams with advanced ...