Splunk Log Integration (legacy)
We recommend our latest Splunk integration for a structured, modernized log delivery experience via OpenTelemetry, now with sourcetype control.
CloudAMQP ships broker logs to Splunk via the HTTP Event Collector (HEC) using the legacy log-forwarding service. Available on RabbitMQ dedicated instances.
Link: https://www.splunk.com
Setup
-
In Splunk, go to
Settings → Data inputs → HTTP Event Collector
and create a new token at
https://<your-splunk>.cloud.splunk.com/en-US/manager/search/http-eventcollector -
Copy the HEC token and the host/port destination (e.g.
input-prd-p-abc123.cloud.splunk.com:8080) - Enter the token and the host/port in the CloudAMQP integration form and click Save