Plan data onboarding

Use the Plan data onboarding scenario to create an onboarding plan and task list for a supported data source.

Use the Plan data onboarding scenario when you need a plan for bringing a supported data source into Splunk software. Answer assistant questions and structured prompts to capture onboarding details, choose an ingestion strategy, and create a task list that you can track as you work.

Guided Onboarding can suggest data sources, describe available onboarding strategies, show topology information when available, and create tasks for the selected strategy. Review generated recommendations before you implement changes in production environments.

Start the Plan data onboarding scenario

Start the Plan data onboarding scenario from the Onboard data page.

  • You must have permission to start Guided Onboarding scenarios.

  • Gather any source, platform, volume, latency, deployment model, and ingestion preference details that you already know.

Use the Plan data onboarding scenario to create an onboarding plan and task list for a data source.

  1. Log in to Splunk Cloud Platform. In the Data Management area, select Scenarios.
  2. On the Scenarios page, select Onboard data.
  3. On the Plan data onboarding tile, select Get started.
  4. In the chat, select an option that describes your goal or describe the data source or monitoring goal that you want to plan for.
  5. Answer the assistant questions and structured prompts about your source, platform, volume, latency, deployment model, and ingestion preferences.
  6. Review the recommended data sources and the explanation for each recommendation.
  7. Select one data source to onboard.
  8. Review the available onboarding strategies and select the strategy that matches your requirements.
  9. Review the generated task list.
  10. Complete each task in the tool or component identified by the task, such as the AWS Management Console, Splunk Web, or Splunk Search.
  11. Update task status in Guided Onboarding as you complete the work.
  12. After you complete setup, verify that events appear in the Splunk platform by using the destination index and source type from your strategy.

You have an onboarding plan, selected strategy, and tracked task list for bringing the supported data source into the Splunk platform. You can open the onboarding plan from the Scenarios page to review task descriptions and mark tasks as done after you complete them.