Splunk Enterprise

What is the best way to migrate from Splunk light trial indexes to the cloud version

I used a Splunk Light instance on my own machine when we launched our project. We're hitting the expiration date and decided to buy a Splunk cloud license. How do we get the index from the Splunk Light instance to the Splunk Cloud instance?

Normally I would just scp the file onto the new machine but it doesn't seem like we have disk access for Splunk Cloud version.

0 Karma

I ended up solving this by doing daily exports from the Splunk Light instance and writing a script to upload to the Splunk Cloud instance via the http endpoint. Specifically: services/collector/event
Documentation:
http://docs.splunk.com/Documentation/SplunkLight/6.6.1/GettingStarted/UsingHTTPeventcollector

Splunk Employee
Splunk Employee

Great you want to purchase a Splunk Cloud license. I suggest you contact Splunk Sales regarding upgrading/migrating from Splunk Light to Splunk Cloud. Go to https://www.splunk.com/en_us/about-us/contact.html.

0 Karma