Skip main navigation (Press Enter).
Log in
Toggle navigation
Log in
Community
Topic Groups
Champions
Meet the Champions
Program overview
Rising Champions
IBM Champions group
User Groups
Find your User Group
Program overview
Events
Dev Days
Conference
Community events
User Groups events
All TechXchange events
Participate
TechXchange Group
Welcome Corner
Blogging
Member directory
Community leaders
Resources
Badge Program
IBM TechXchange
Community
Conference
Events
IBM Developer
IBM Training
IBM TechXchange
Community
Conference
Events
IBM Developer
IBM Training
IBM Concert
×
Back to Library
Export Logs from NS1 and Import data into Splunk Enterprise
Like
Share
Share on LinkedIn
Share on X
Share on Facebook
Wed August 07, 2024 12:27 PM
Pieter De Villiers
Purpose of Workflow: Export Logs from NS1 and Import data into Splunk Enterprise
Description: This workflow gets activity logs NS1 for a 12 hr window and imports the data into Splunk enterprise. The workflow is initiated with user input.
List of requirements:
RNA Install
NS1 Account
Splunk Enterprise Server
Environment Required:
• RNA Install:
o RNA Username / Password
o Mgmt IP of SevOne collector
• NS1 Account:
o NS1 API key
o NS1 API URL
• Splunk Server Account:
o Splunk API Token for Import
o Splunk API URL for data import
Inputs:
Splunk Import Token
Splunk Authorization key
NS1 Authorization key
Window for logs export in Minutes
Setup:
Workflow: Get current timestamp at start of workflow
Workflow: Export logs from NS1 for the window specified for user from current time.
Workflow: Iterate over the results and import each NS1 activity log into Splunk.
Instructions:
To Run the Workflow:
Execute the workflow with the required inputs.
Expected results:
NS1 Activity logs for specified window(mins) are exported and imported into Splunk server.
#Documentation
Statistics
0 Favorited
13 Views
1 Files
0 Shares
3 Downloads
Attachment(s)
NS1_DataExport_splunkImport_2024-08-07_15_57_26.zip
1 KB
1 version
Uploaded - Wed August 07, 2024
Download
Download Document
Please accept the terms of the copyright associated with this attachment before downloading it. Click the link below to read the terms.
Accept
Powered by Higher Logic