Getting Data In

Get logs for G Suite

splunkcol
Builder

 

Hello,

My client requests to ingest G Suite logs, when searching I see several APPs which do not have Splunk support.

Question 1:
What should I understand when an APP does not have Splunk support?

Question 2:
What is the best way to ingest the GSuite logs?

 

https://splunkbase.splunk.com/app/3793/ or https://splunkbase.splunk.com/app/4560/ or https://splunkbase.splunk.com/apps/#/search/G%20Suite/

 

0 Karma

venkatasri
SplunkTrust
SplunkTrust

Hi @splunkcol 

I guess you should be looking for Google Workspace as Gsuite has been renamed. It depends what you want to ingest to Splunk and add-on supporting those logs to be ingested - Splunk Add-on For Google Workspace | Splunkbase this is a splunk supported add-on which i see doc link is broken you have to reachout splunk support for correct link and do a search to find out.

Non Splunk supported add-ons are mostly being developed by Individual developers they usually support it if you contact them in case of any issues with add-on and licensing terms vary free vs paid etc etc you have to read it.

Splunk supported add-ons you can reach out to Splunk support that's the difference in terms of support. Most of the add-ons are free unless there are premium you can find in splunkbase.

---

An upvote would be appreciated and Accept solution if this reply helps!

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...