Hey all you cool cats 😺 and Splunk App for AWS users! We've got an important update regarding Splunk App for AWS, so if you use the app, listen up right meow!
TL;DR - We've extended the End of Life/End of Support date for the Splunk App for AWS to July 15, 2022!
We recently announced the End of Support (EOS) and End of Life (EOL) for Splunk App for AWS, and also released a blog post detailing migration options to the new Splunk App for Content Packs , including the Content Pack for Amazon Web Services Dashboards and Reports — for IT Essential Work and ITSI users. This content pack was built specifically for ITOps use cases in mind, and we’ve heard your feedback - you want AWS entity types and security dashboards supported as well.
That’s why we’ve decided to extend the End of Life/End of Support date for the Splunk App for AWS from January 5, 2022 to July 15, 2022, ensuring we deliver a solution that meets the needs of all our customers .
Quick context: the original Splunk App for AWS was used for both IT monitoring and security use cases and provides dashboards for both ITOps and security teams. When the app officially EOLs on July 15, 2022, we will have a separate app for just AWS security dashboards that leverages the Splunk Add-on for Amazon Web Services (TA) . This means existing Splunk App for AWS users wanting to continue using security dashboards can use the new AWS Security App.
Here are some scenarios of potential outcomes that show what post-migration may look like, depending on how you currently use Splunk App for AWS and what your Splunk deployment looks like. Each of these assumes the AWS Technical Add-on (TA) is deployed for getting data in (GDI):
If you have any questions or need help with the migration process, definitely check out our earlier blog post , or you can reach out to your paw-some Splunk account team. And if you have other thoughts or questions, just sound off in the comments below!
-- Felicia Dorng, Sr. Product Marketing Manager
... View more
Hey, all you cool cats and Splunk community!
Did you know the best things come in content packs? What's a "content pack" you ask? Only the most amazing thing to make your job easier and help you get started with Splunk for IT use cases. Formal definitions:
Splunk App for Content Packs noun 1. An app that acts as a one-stop-shop for all content packs 2. Prepackaged contents offer out-of-the-box searches and dashboards for common IT infrastructure sources 3. FREE app on Splunkbase for ITSI and IT Essentials Work users
Content Pack noun 1. Individual packs that come with prepackaged content and out-of-the-box searches and dashboards for a specific use case. (e.g. Content Pack for Microsoft 365) 2. Helps streamline workflows and ensures you maximize and optimize usage of ITSI and IT Essentials Work 3. No Search Process Language (SPL) required
Content Packs require IT Service Intelligence (ITSI) or IT Essentials Work (ITE Work) 4.9 or later, and Splunk Add-ons for specific Content Packs. Access to capabilities is dependent on whether you have ITE Work or ITSI - refer to the table below.
Objects ITE Work ITSI
Entity integrations (data sources)
Infrastructure Overview dashboards
Entity Analytics dashboard
Metrics to Log Correlation (Analytics Workspace)
Service Analyzer Dependency Maps
KPI base searches
Correlation searches and Notable Event Aggregation Policies
Content Pack for Synthetic Monitoring The new Content Pack for Synthetic Monitoring makes it easy for you to visualize and investigate synthetic data from the Splunk Synthetic Monitoring Add-on . With pre-built dashboards and common KPIs available, you can better manage the performance of your web applications by identifying and viewing Synthetic Checks.
Content Pack for Third-Party APM If your organization uses various tools to manage different applications, or if you’re in the process of migrating from one vendor to another, then the Content Pack for Third-Party APM is for you. By bringing your APM data into Splunk ITSI or ITE Work, you can better manage the performance of all your applications alongside the rest of your environment. This means greater visibility and a better understanding of what is going on across your teams. This content pack comes with pre-built dashboards for specific APM vendors, Glass Tables for ITSI, KPIs, and services. Note that you will need the Splunk Add-on for AppDynamics, Dynatrace, or New Relic to get that data in.
Want to get caught up on what content packs is all about? Check out these resources:
Tech Talk: 3 Ways Splunk Delivers Insights from Microsoft Exchange Environments
Tech Talk: Microsoft 365: Are you flying blind...and at what cost
Tech Talk: Simplify AIOps with Universal Alerting
Tech Talk: Faster Time to Value with ITSI Content Packs
Blog: Getting Data In for IT Essentials Work and ITSI
Blog: Managing IT Just got Easier. Introducing the New Splunk App for Content Packs
Blog: Microsoft 365
Blog: Content Packs for Synthetic Monitoring and Third-party APM
Blog: Third-Party APM: Unite your Legacy APM Data on Your Journey to Observability
... View more