New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We鈥檒l occasionally send you account related emails.
Already on GitHub? Sign in to your account
Adding splunk HEC support #179
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
馃帀
Hi @repeatedly could we get this PR merged? |
Any update @repeatedly? |
Need debian images and please add your name to README's maintainer section: https://github.com/fluent/fluentd-kubernetes-daemonset#maintainers |
Signed-off-by: Max Williams <futuresharks@gmail.com>
@repeatedly done and done |
adding Debian image updating config for alpine image Signed-off-by: Max Williams <max.williams@deliveryhero.com>
sorry for the late. Merged! |
No worries, thanks @repeatedly 馃檪 |
a little more documentation would go a long way here. ive been scratchin at this for a bit. i see in |
^ hundreds of these in the logs, but indicies all empty :( . i'd be super grateful for any hints! |
@cdaringe it might help to rule out fluentd for now and just test your HEC with curl: http://dev.splunk.com/view/event-collector/SP-CAAAE7F Then find your message in your Splunk, work out the index etc. |
Thanks. I meant to follow up. This plugin was doing great work, but splunk was tossing away the data due to an issue I'm still working out. Thanks for the feedback! |
I built the container and tested it in our environment and it works well 馃檪