02/27/2023 11:23 AM
We are installing the Saviynt TA to our client's Splunk Cloud instance. The Splunk admin team wanted to check if the inputs can be disabled within the default inputs.conf. The reason for this is if it were to be installed with those inputs enabled, it could disrupt the input on the heavy forwarder.
Solved! Go to Solution.
03/01/2023 01:33 PM
I appreciate you reaching out to the Saviynt forums.
Refer to the following documentation link for a detailed explanation of the integration between Saviynt and Splunk
03/02/2023 07:53 AM
Thanks DixshantValecha for the reply. We have the integration but the inputs cannot be default as the inputs enabled, it could disrupt the input on the heavy forwarder.
03/08/2023 08:01 PM
The steps defined in Splunk addon (Savint TA) document is applicable to onprem Splunk Enterprise implementation. This addon was developed by the Saviynt community and was verified by Saviynt, however this addon is not a product out of the box offering - you can review the supported version and other details at the start of the splunk integration guide https://docs.saviyntcloud.com/bundle/Splunk-Guide/page/Content/About-this-Guide.htm.
03/13/2023 08:51 AM
Hi udiptaroy, please confirm if the above response answer your question. Also let us know if you have any follow up question.
03/31/2023 09:36 AM
@udiptaroy I can help on providing the add-on without the default input. Please note that this is a collaboration request as we enhance our add-on to be compatible with Splunk Cloud.