Skip to content

My own curated list of awesome Splunk links, utilities, etc.

Notifications You must be signed in to change notification settings

masonsmorales/awesome-splunk

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 

Repository files navigation

awesome-splunk

Mason's curated list of awesome Splunk projects and resources

Toc

Community

  • Slack - Splunk's official community Slack team (splunk-usergroups)
  • Splunk Answers - Splunk Answers Community Q&A

Splunk Conference

Automation

  • Splunk Ansible - Splunk's official Ansible role (used by Splunk's official Docker image)
  • Splunk Docker - Splunk's official Docker image
  • Ansible Splunk Callback - Ansible callback for sending task and play logs to Splunk's HTTP Event Collector (HEC)
  • Chef Cookbook - A Chef Cookbook for installing and configuring Splunk forwarders and servers

Splunkbase Addons

Visualizations

New Splunk Alert Actions

  • HTTP Alert Action - Send HTTP(S) requests [GET|POST] with custom headers, method, etc. with an option to ingest response to index
  • Syslog Mod Alert - Send generic or CEF syslog events
  • Alert Manager
  • Alert Schedule - Create custom alert schedules using provided lookup files
  • SSH Alert Actions (for Linux 64-bit) - Send search results over SFTP or execute shell commands on remote systems via SSH.
  • Sendresults - Improved version of Splunk's email alert action that supports CSS, dynamic evaluation of email "to" and "subject" fields, multiple recipients, etc.

Apps for Splunk Admins

Open Source Utilities

  • Splunk Admin Alerts - Splunk app with prepackaged alerts for monitoring and troubleshooting Splunk Enterprise deployments
  • KV Store Backup - Python script to backp up KVStore collections via the REST API
  • KV Store Synch - Splunk TA to provide both modular inputs and a modular alert for synchronizing KVStore content across Splunk instances
  • HEC Modular Alert - Splunk Modular Alert to send search results to a Splunk HTTP Event Collector (HEC)
  • HEC Python Class - Python class to submit events to Splunk HTTP Event Collector
  • Splunk Plugin for Hashicorp Vault - Hashicorp Vault plugin to securely manage Splunk admin accounts and password rotation
  • Docker Logging Driver - Docker Logging Driver for Splunk

About

My own curated list of awesome Splunk links, utilities, etc.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages