DOKK Library

Splunk HTTP Event Collector (HEC) Pipelines

Authors Aplura LLC.

License CC-BY-SA-4.0

Plaintext
                                                                                                                                                                  V1.0




                                                                                                                    Many Solutions, One Goal.

                                                                                                                 Splunk HTTP Event
                                                                                                               Collector (HEC) Pipelines

                                                                                                                •     UTF Encoding
                                                                                                                •     Line Breaking
                                   /services/collector/raw                                                      •     Metrics Processing
                                                                                                                •     Header Processing

                                                                                           Parsing Pipeline




                                                                                                                •     Line Merging
                                   /services/collector/event?auto_extract_timestamp=true                        •     Timestamp Extracting

                                                                                           Merging Pipeline




                                                                                                                •     Filtering/Routing
                                  /services/collector/event                                                     •     Field Extraction
                                                                                                                •     Log-to-metrics
                                                                                                                •     Punct. Extracting
                                                                                               Typing
                                                                                               Pipeline




                                                                                                                •     tcp/splunktcp Forwarding
                                                                                                                •     Syslog Forwarding
                                                                                                                •     Indexing When Forwarding
                                                                                                                •     License Volume Calculation
                                                                                                                •     Writing To Disk
                                                                                           Indexing Pipeline    •     Metric Calculation

                                                                                                               Splunk is a registered trademark of Splunk, Inc.
Provided by Aplura, LLC. Splunk Consulting                                                                     This work is licensed under the Creative Commons
and Application Development Services. sales@aplura.com https://www.aplura.com                                  Attribution-ShareAlike 4.0 International License.