Add or manage destinations
Destinations represent and provide access to the storage locations that your Ingest Processor pipelines send data to. As an administrator, you can use the Destinations page to add, edit or delete your destinations.
For more information, see the following sections on this page:
Add a destination
Depending on where you want to send your data and what version of Splunk Cloud Platform your Ingest Processor service is associated with, you can add a destination by doing one of the following:
-
Navigate to the Destinations page in the Ingest Processor service, select New destination, and then select the destination type.
-
Navigate to the Data Management app in Splunk Cloud Platform, and then create a connection and dataset corresponding to the storage location where you want to send your data.
For more information, see the following pages:
-
Send data from Ingest Processor to your Splunk Observability Cloud deployment
-
For Splunk Cloud Platform 10.4.2604 or higher:
-
For Splunk Cloud Platform 10.3.2512 or lower:
Edit a destination
The instructions for editing a destination vary depending on whether the destination is managed by the Ingest Processor service or the Data Management app on Splunk Cloud Platform.
For destinations that are managed by the Ingest Processor service, you open a destination for editing from the Destinations page.
For destinations that are managed by the Data Management app, you edit the destination by editing the associated connection and dataset. Settings that pertain to authentication and account access are typically stored in the connection, while settings that pertain to the choice of data storage location and the format of the output data are typically stored in the dataset.
- Do one of the following:
-
In the Ingest Processor service, navigate to the Destinations page.
-
In Splunk Cloud Platform, select the Data Management app, and then navigate to the Connections page.
-
In Splunk Cloud Platform, select the Data Management app, and then navigate to the Datasets page.
-
- In the row that lists the Ingest Processor pipeline that you want to modify, select the Actions icon (
) and then select Edit.
- Update the configuration settings as desired, and then select Save.
It can take a few minutes for these processes to be completed. During this time, the affected Ingest Processor pipelines enter the Pending status.
To confirm that the process completed successfully, do the following:
- Navigate to the Ingest Processor page. Then, verify that the Instance health column for the affected Ingest Processor pipelines show that all instances are back in the Healthy status.
- Navigate to the Pipelines page. Then, verify that the Applied column for the affected pipelines contains a The pipeline is applied icon (
).
Delete a destination
The instructions for deleting a destination vary depending on whether the destination is managed by the Ingest Processor service or the Data Management app on Splunk Cloud Platform.
For destinations that are managed by the Ingest Processor service, you delete the destination from the Destinations page.
For destinations that are managed by the Data Management app, you delete the destination by deleting the associated dataset. You can choose whether to also delete the associated connection, or keep the connection so that you can use it to create other datasets and destinations.
- Do one of the following:
-
In the Ingest Processor service, navigate to the Destinations page.
-
In Splunk Cloud Platform, select the Data Management app, and then navigate to the Datasets page.
-
- In the row that lists the destination that you want to delete, select the Actions icon (
) and then select Delete.
- Select Delete to confirm your choice.