Splunk Enterprise

Connecting Splunk with Power bi

Sabahat
Loves-to-Learn Lots

I am finally successful in connecting Splunk with Power BI. But while adding a new source and getting data in Power BI, the data models I see are different from those I see in the Splunk datasets tab's interface and I also do not find the table view I created in Splunk.

Labels (1)
0 Karma

Sabahat
Loves-to-Learn Lots

This gets resolved somehow. Now I am trying to connect the remote desktop (my peer's Splunk with my power bi) to do a POC. I almost tried everything but I am unable to connect with other Splunk. I can only connect with my own.  @ashvinpandey  Sir, can you please guide me?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

Have you read this https://conf.splunk.com/files/2022/slides/PLA1122B.pdf ?

I suppose that you can contact Mary in Splunk UG Slack if you are needing some help?

r. Ismo

0 Karma

PickleRick
SplunkTrust
SplunkTrust

OK. First things first.

What did you do to "connect Splunk with Power BI"? Are you ingesting data from Power BI into Splunk? (how?) or are you getting the data from Splunk into PowerBI? (again - how?).

0 Karma

Sabahat
Loves-to-Learn Lots

I am trying to get the data from Splunk into PowerBI. For that, I made a connection between Splunk and Power BI through the Splunk ODBC driver.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

And what are you "pulling" from Splunk? Honest question, I have no idea how Splunk ODBC driver works - do you define a search being your data source globally or do you define one every time you call that data source?

0 Karma

Sabahat
Loves-to-Learn Lots

I am trying to pull the datasets from Splunk into my Power bi desktop to analyze it. yeah I am fetching it for global search.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

OK. If you're using ODBC for Splunk, it executes a saved search and pulls its results into your tool (whatever it is - PowerBI, Excel, anything else).

So it's completely independent from the datamodels defined on Splunk's side. So it's up to you to prepare a saved search on Splunk side that will produce the data you'll be pulling with the ODBC driver.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...