Getting data into Log Observer
In order to use Splunk Log Observer, you must start with getting data in.
Step 1: Collect infrastructure data with an OpenTelemetry Collector
Observability Cloud supports integrations for Kubernetes, Linux, and Windows. Integrations for these data sources help you deploy a Splunk OpenTelemetry Collector to export metrics from hosts and containers to Observability Cloud.
- Using the Splunk OpenTelemetry Collector is optional; however, you get higher-resolution data using the collector than from cloud integrations.
- See these pages for more information about sending host or container metrics to Observability Cloud:
- Additionally, here is a list of all Supported Data Sources, and how to integrate them.
Step 2: Verify successful data ingestion
Verify successful ingestion of data by filtering or aggregating the log data available. Performing these basic functions will enable you to drill deeper into the ingested log data to determine whether or not the data was ingested as expected.
You can do this by selecting the Add Filter button at the top of the search header in the Log Observer UI. Add a filter to the data that you know should be present in the ingested log data in order to verify successful data ingestion.
After you’re satisfied with how the data is ingested and is presented in Log Observer, you have completed this Getting Data In step.