01-02-2024 10:27 PM
Hi,
I have recently started Splunk Integration with Databricks. Basically I am trying to ingest the data from Splunk to Databricks. I have gone through the documentation regarding Splunk Integration. There are some basic information about the integration but I am looking for something else which is not available in the document.
I would like to know the ways which are possible with data ingestion from Splunk.
- Can we send the log data directly from Splunk to Databricks?
- Do any intermediate tools/api required for the communication? If it's mandatory, then what are the possible tools/api?
- Splunk have event data and metric data. Is it possible to pick both these type of data by Databricks?
Could anyone please help me out with these queries?
01-03-2024 02:53 AM
Thankyou @Retired_mod for the clear explanation.
I have another set of questions. Please provide your suggestion on these as well.
Thankyou!
01-05-2024 02:04 AM
Thankyou @Retired_mod .
Currently I am planning to check the possible ways to send the sample data to Databricks from Splunk without any third party tool's intervention.
Let me play around with those and get back to you if I need any guidance at any place.
Thanks once again!
01-09-2024 03:41 AM
You have mentioned that Databricks Add-on for Splunk, is bidirectional. Do we need to install this app on Databricks itself, to fetch the data from Splunk?
I tried to check this add-on on Databricks Marketplace but I could not find this. Can you please let me know the process to install the add-on?
I am looking to push the data from Splunk to Databricks and do some process and activity on daily basis. Could you please suggest me on this?
01-09-2024 09:36 PM
Hi @Retired_mod
Can you please guide me on this?
01-22-2024 12:33 AM - edited 01-22-2024 12:34 AM
Hi @Retired_mod
I have gone through the github page of Databricks - Splunk integration. In the architecture diagram it is mentioned with 3 sections.
My requirement is only to fetch the data from Splunk and put in Databricks to do analysis and create dashboard. so I assumed, for my usecase 3rd option is the method to be done and I have followed the github page - here.
I have installed the databricks cli, created a secret scope to save Splunk credentials. Now I am working on the Notebook part to create Python code to fetch data.
Could you please guide me on this to proceed further?
01-23-2024 12:03 AM
@Retired_mod Can you please guide me on this?
01-29-2024 03:32 AM
Hi @Retired_mod
Still I am awaiting for your response on this. Can you please go through my above reply and guide me accordingly?
Thank you!
07-19-2024 10:22 AM
Hi @Arch_dbxlearner Did you done integration with splunk if yes can you please help
Join a Regional User Group to connect with local Databricks users. Events will be happening in your city, and you won’t want to miss the chance to attend and share knowledge.
If there isn’t a group near you, start one and help create a community that brings people together.
Request a New Group