Shibboleth Metrics to Splunk

Alan Buxey alan.buxey at myunidays.com
Tue Mar 12 09:26:38 UTC 2024


hi,

I am trying to send Metrics to Splunk using the HTTP Event Collector.
> Splunk HEC requires setting the Authorization header like this example:
>
> Authorization: Splunk fc0fcc92-47f8-4da7-9272-c04619122302
>
> I see an example in the docs about how you would set user/pass by
> overriding HttpClientSecurityParameters, but now how you would arbitrarily
> set the Authorization header to a somewhat non-standard value like this. I
> cannot find how one would arbitrarily configure the IDP to send a custom
> header.
>
> I have also taken stabs at creating a custom HttpClient bean, without
> success.
> If someone has set this up and could help me out with the XML needed to
> create the HttpClient bean that then gets passed into the HTTPReporter in
> metrics.xml, I'd sure appreciate it.
>

there were a couple of sessions at last years TechEx (Minnesota) where
people were presenting throwing their metrics into Splunk et al (there was
Splunk, Prometheus, Grafana and usual ELK) - I'd suggest having a look at
the presentations/slides and see how they were achieving their outcomes
(as I can't recall from the top of my head any of the config snippets they
showed :) )

regards

alan
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20240312/91b80256/attachment.htm>


More information about the users mailing list