SEI Splunk integration
Splunk produces software for searching, monitoring, and analyzing machine-generated big data via a web-style interface.
Use the SEI Splunk integration to integrate SEI with Splunk.
This SEI integration is under development. It provides limited integration support in its current state.
Configure the integration
- Cloud
- Satellite
- In your Harness Project, select the SEI Module, and go to your Account.
- Select Integrations under Data Settings.
- Select Available Integrations, locate the Splunk integration, and select Install.
- Configure and save the integration.
- Add the URL of your Splunk instance
- Add your splunk username for authentication
- Add your Splunk API Key or Authentication token that you previously generated.
- Specify any relevant options (Ignore Server Cert, Is Splunk Cloud)
- Description and Tags are optional
- Finish configuration and Save the integration.
The steps for configuring the integration using Satellite is similar to configuring the integration on cloud, with the exception of using satellite to communicate with the Splunk server.
Make sure to select the satellite integration checkbox while configuring the integration. Once you save the integration a satellite.yml file will be automatically generated and downloaded to your computer. Update it following the instructions here.
If you experience any issues while configuring the integration using the Ingestion Satellite, refer to the Ingestion Satellite Troubleshooting and FAQs.
Here’s a sample satellite.yml
file
satellite:
tenant: <ACCOUNT_ID>
api_key: <ACCOUNT_API_KEY>
url: 'https://app.harness.io/gratis/sei/api' # Note that this URL is relative to the Environment of your Harness Account.
integrations:
- id: '<INTEGRATION_ID>'
application: splunk
url: '<SPLUNK_URL>'
username: <SNYK_USERNAME>
api_key: <SNYK_API_KEY>
metadata:
ignore_server_cert: true
is_splunk_cloud: true