XMLWordPrintable

Details

    Description

      Goals

      • Provide a new output option to forward logs to Splunk.

      Motivation

      Usually, we recommend to use Splunk Connect for Kubernetes but some customers have requirements to send logs to multiple, different systems including Splunk. For these use cases, they'd like to avoid deploying multiple different "Agents" and want to use our supported solution instead.

      Acceptance Criteria

      • Verify ClusterLogForwarder defines API for forwarding to splunk
      • Verify collector deployments of Vector deliver logs to a spec'd splunk service
      • Verify normalized messages adhere to the viaq data model ??

      Risk and Assumptions

      • Risk Splunk may require alternate normalization; this may be no more challenging then syslog

      Documentation Considerations

      Open Questions

      • How can we test either a functional or integration test?
      • Are there mocking services we can use similar to Cloudwatch
      • What credentials are required to authenticate with the service.

      Attachments

        Activity

          People

            landerso@redhat.com Libby Anderson
            rkratky@redhat.com Robert Krátký
            Votes:
            2 Vote for this issue
            Watchers:
            8 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: