Tips & Tricks Blogs

Latest Articles

Getting Github Data with Webhooks
Tips & Tricks
3 Minute Read

Getting Github Data with Webhooks

Follow these step-by-step instructions to onboard Github data directly into Splunk Cloud.
Making the Collection of Centralised S3 Logs into Splunk easy with Lambda and SQS
Tips & Tricks
2 Minute Read

Making the Collection of Centralised S3 Logs into Splunk easy with Lambda and SQS

If you got multiple AWS data sources in the same S3 bucket but struggle with efficient SNS notifications based on prefix wildcards, this article has got you covered.
How To Determine When a Host Stops Sending Logs to Splunk...Expeditiously
Tips & Tricks
4 Minute Read

How To Determine When a Host Stops Sending Logs to Splunk...Expeditiously

A brief overview on how to use tstats to monitor your hosts and bring awareness when they stop logging to Splunk.
Getting Microsoft Azure Data into Splunk
Tips & Tricks
4 Minute Read

Getting Microsoft Azure Data into Splunk

An overview of how Microsoft makes Microsoft Azure data available, how to access the data, and out-of-the-box Splunk Add-Ons that can consume this data.
Splunk and AWS: Monitoring Metrics in a Serverless World
Tips & Tricks
4 Minute Read

Splunk and AWS: Monitoring Metrics in a Serverless World

Integrating Splunk Add-On for AWS provides a serverless management experience, saves costs, and makes data collection, gathering and taming simple.
Splunk Connect for Syslog: Turnkey and Scalable Syslog GDI - Part 2
Tips & Tricks
5 Minute Read

Splunk Connect for Syslog: Turnkey and Scalable Syslog GDI - Part 2

The second part of a two-part series on Splunk Connect for Syslog and configuration
Splunk Connect for Syslog: Turnkey and Scalable Syslog GDI - Part 1
Tips & Tricks
7 Minute Read

Splunk Connect for Syslog: Turnkey and Scalable Syslog GDI - Part 1

Part one of two in an overview of Splunk Connect for Syslog, its design goals, architecture, and high-level configuration
Get _time on your side - How to sort by more than one time field
Tips & Tricks
3 Minute Read

Get _time on your side - How to sort by more than one time field

Is it possible to sort by more than one time field in Splunk? Yes, definitely — Splunker David Clawson explains exactly how in this blog post.
Order Up! | Custom Sort Orders
Tips & Tricks
4 Minute Read

Order Up! | Custom Sort Orders

A how-to on creating custom sort orders for your search results