Splunk Enterprise

Seeking Guidance on Configuring Kubernetes Logs with Splunk Enterprise

spodda01da
Path Finder

Hi All,

I've been exploring various documentation and tutorials, but I'd love to hear from those who have hands-on experience. What are the best practices and recommended steps for configuring Kubernetes logs to seamlessly integrate with Splunk Enterprise? Are there any specific considerations or challenges I should be aware of during the setup process?

Thanks in advance for sharing your expertise!

mattymo
Splunk Employee
Splunk Employee

The way to go is with the OpenTelemetry Helm Chart. Wrote a lil quickstart here

https://github.com/matthewmodestino/otel-quickstart/blob/main/kubernetes/0-quickstart-home.md#kubern...

See docs and validated architecture for more!

https://docs.splunk.com/Documentation/Splunk/9.1.2/Data/OtelCollectorKubernetes

https://docs.splunk.com/Documentation/SVA/current/Architectures/OTelKubernetes

If you run into issues reach out to your SE, we have workshops or jump into the community slack channel splk.it/slack!

holler at me in the kubernetes channel, or opentelemetry channels, (mattymo)

- MattyMo
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...