Skip to content
fernet.consultores

Digital Engineering & Automation

Splunk Integrations.

Bespoke add-ons, inputs, commands and connections to bring data into Splunk and trigger actions outside it.

The problem we solve.

Not every source has a Splunkbase add-on, and not every alert should stay inside Splunk: sometimes it needs to open a ticket, call an API or enrich an event with external data.

What’s included.

  • Custom add-ons and modular inputs
  • Data delivery via HTTP Event Collector
  • Custom alert actions
  • Custom search commands
  • Integration with the Splunk REST API

How we work.

Five phases, always in the same order. Select each one to see what happens in it. In full projects they map onto the stages of our method.

We understand the process, the systems involved, the constraints and how success will be measured.

We design the solution: components, interfaces, security, error handling and deployment.

We develop the add-on, input, command or action using Splunk's official frameworks.

We validate the package with AppInspect and test it in a Splunk environment before installing it in production.

We measure actual usage, fix issues and document so your team can maintain it.

Technical capabilities.

  • Splunk Add-on UCC Framework
  • Splunk SDK for Python
  • HTTP Event Collector
  • Splunk REST API
  • Custom alert actions
  • AppInspect

Use cases.

Source without an add-on

Bring in a proprietary application or a SaaS service.

Alerts that act

Open a ticket or notify another tool.

Enrichment

Add external data to events at search time.

Benefits for your organisation.

  • Any source into Splunk
  • Alerts that trigger actions
  • Code validated for Splunk Cloud
  • Maintainable by your team

Deliverables.

  • Packaged add-on or integration
  • AppInspect validation
  • Documentation
  • Source code in your repository

Frequently asked questions.

Does it work in Splunk Cloud?

Yes, we validate the apps with AppInspect so Splunk Cloud accepts them.

Do you use official frameworks?

Yes, such as the Splunk Add-on UCC Framework and the Splunk SDK for Python.

What about Splunk Observability Cloud?

We also integrate with its API to automate detectors, dashboards and data.

Shall we talk about Splunk Integrations?

Tell us about your situation. If this service is not what you need, we will tell you; if it is, we will propose a concrete first step.

Request this service