Splunk Search

Is it possible to consume data from Splunk by another system?

rakeshyv0807
Explorer

Hello,

Currently we are doing a POC where we are forwarding data to Splunk cloud via HTTP Event collector. We are also using Splunk cloud where the data from several systems is being forwarded to splunk cloud via Heavy & Universal Forwarders. We came across a requirement where we need to push the data that is collected in splunk to a third party system by any means. We want to first try with the POC we are doing and later implement the same in our actual environment. Can you please suggest if something like this possible and if so how to achieve it?

Any help is greatly appreciated and thanks in advance.

Rakesh

Tags (1)
0 Karma

adonio
Ultra Champion

read here all the way through the article:
http://docs.splunk.com/Documentation/Splunk/7.2.1/Forwarding/Forwarddatatothird-partysystemsd

note: not sure what are the capabilities of moving data from Splunk Cloud, therefore ill reccomend to first try focus your POC on instances under your control such as Heavy Forwarders

hope it helps

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...