This chapter will detail the most important aspect of Splunk, that is, adding data to Splunk. We will go through the newly added feature in Splunk 6.3 of JSON and REST API format of IoT event collections, HTTP Event Collector, and then, we will cover the various interfaces and options to on-board data on Splunk. We will also study how to manage event segmentation and improvise the data input process.
The following topics will be covered in this chapter:
Deep diving into various input methods and sources
Adding data to Splunk—new interfaces
Data processing
Managing event segmentation
Improving the data input process