Splunk Expands Data Management Capabilities To Include Ingest Monitoring

Managing data ingestion at scale is no easy task. As organizations onboard hundreds or even thousands of data sources into the Splunk platform for security, observability, and other business-critical use cases, it becomes increasingly complex to ensure data is consistently available and onboarded efficiently.

Historically, Splunk admins had to rely on custom dashboards and/or third-party apps to monitor their data ingestion metrics. These apps required installation, upgrades, and maintenance, adding to admin toil. But today, that changes! We’re excited to announce an expansion of our data management capabilities in Splunk Cloud Platform to now include ingest monitoring. Ingest monitoring provides a set of out-of-the-box dashboards that are designed to help admins easily monitor ingestion across their entire Splunk deployment - without needing custom dashboards or the overhead of installing and maintaining third-party apps.

See What Matters, Instantly

With ingest monitoring, admins can:

Integration with Your Existing Monitoring Workflow

Ingest monitoring integrates directly into the Splunk Cloud Monitoring Console (CMC), an experience you already know and use. When you enable ingest monitoring on your deployment, you can choose to add a new "New source types" metric to your CMC Overview dashboard. From there, a single click brings you to the ingest monitoring app for detailed analysis, allowing you to leverage your existing monitoring workflows.

Getting Started

If you're a Splunk Cloud Platform customer, ingest monitoring is either already available to you or will be rolled out to your deployment in the next few weeks. Once available, you can find it in the Apps dropdown in your deployment. The first time you launch ingest monitoring, a brief onboarding workflow will guide you through setup and ask for permission to run scheduled searches that power the dashboards. This is a one-time setup.

For complete information, visit Splunk Docs.

Related Articles

Introducing Inputs Data Manager on Splunk Cloud
Platform
4 Minute Read

Introducing Inputs Data Manager on Splunk Cloud

We're giving you an overview of introducing inputs data manager on Splunk Cloud and answering frequently asked questions.
Introducing Edge Processor for Splunk Enterprise: Data Management on Your Premises
Platform
2 Minute Read

Introducing Edge Processor for Splunk Enterprise: Data Management on Your Premises

Announcing the introduction of Edge Processor for Splunk Enterprise 10.0, designed to help customers achieve greater efficiencies in data transformation and improved visibility into data in motion.
Get to Know Splunk Machine Learning Environment (SMLE)
Platform
5 Minute Read

Get to Know Splunk Machine Learning Environment (SMLE)

An introduction to SMLE Labs and a showcase of the various ML capabilities at a high level by walking you through the environment, step-by-step.