Splunk Enterprise

Export OTEL data from one Splunk to a file and reimport to another SPunk install?

robertlynch2020
Influencer

HI

Is it possible to

1st Export OTEL data to file(or something)

2nd Import that file to a new Splunk install?

We have a cluster with 3 INDEXERS and I want to export specific host data out of it and import it to a Test and Development Install. Is this possible?

@js15 

Regards

Robert

Labels (1)

mattymo
Splunk Employee
Splunk Employee

Hey! Yeah OTel file exporter can be used. 

https://github.com/open-telemetry/opentelemetry-collector-contrib/tree/main/exporter/fileexporter

You could also configure otel to filter the data you want and send to file and hec simultaneously!

https://github.com/signalfx/splunk-otel-collector/tree/main/examples/otel-logs-routing

Splunk otel distro has these components: https://github.com/signalfx/splunk-otel-collector/blob/main/docs/components.md

- MattyMo
0 Karma
Get Updates on the Splunk Community!

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

Industry Solutions for Supply Chain and OT, Amazon Use Cases, Plus More New Articles ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Enterprise Security Content Update (ESCU) | New Releases

In November, the Splunk Threat Research Team had one release of new security content via the Enterprise ...