Getting Started

During this technical Ingest Processor1 for Splunk Observability Cloud workshop you will have the opportunity to get hands-on with Ingest Processor in Splunk Enterprise Cloud.

To simplify the workshop modules, a pre-configured Splunk Enterprise Cloud instance is provided.

The instance is pre-configured with all the requirements for creating an Ingest Processor pipeline.

This workshop will introduce you to the benefits of using Ingest Processor to convert robust logs to metrics and send those metrics to Splunk Observability Cloud. By the end of these technical workshops, you will have a good understanding of some key features and capabilities of Ingest Processor in Splunk Enterprise Cloud and the value of using Splunk Observability Cloud as a destination within an Ingest Processor pipeline.

Here are the instructions on how to access your pre-configured Splunk Enterprise Cloud instance.

Splunk Ingest Processor Architecture Splunk Ingest Processor Architecture


  1. Ingest Processor is a data processing capability that works within your Splunk Cloud Platform deployment. Use the Ingest Processor to configure data flows, control data format, apply transformation rules prior to indexing, and route to destinations. ↩︎

Last Modified Jul 23, 2025

Subsections of 1. Getting Started

How to connect to your workshop environment

  1. How to retrieve the URL for your Splunk Enterprise Cloud instances.
  2. How to access the Splunk Observability Cloud workshop organization.

1. Splunk Cloud Instances

There are three instances that will be used throughout this workshop which have already been provisioned for you:

  1. Splunk Enterprise Cloud
  2. Splunk Ingest Processor (SCS Tenant)
  3. Splunk Observability Cloud

The Splunk Enterprise Cloud and Ingest Processor instances are hosted in Splunk Show. If you were invited to the workshop, you should have received an email with an invite to the event in Splunk Show or a link to the event will have been provided at the beginning of the workshop.

Login to Splunk Show using your splunk.com credentials. You should see the event for this workshop. Open the event to see the instance details for your Splunk Cloud and Ingest Processor instances.

Note

Take note of the User Id provided in your Splunk Show event details. This number will be included in the sourcetype that you will use for searching and filtering the Kubernetes data. Because this is a shared environment only use the participant number provided so that other participants data is not effected.

Splunk Show Instance Information Splunk Show Instance Information

2. Splunk Observability Cloud Instances

You should have also received an email to access the Splunk Observability Cloud workshop organization (You may need to check your spam folder). If you have not received an email, let your workshop instructor know. To access the environment click the Join Now button.

Splunk Observability Cloud Invitation Splunk Observability Cloud Invitation

Important

If you access the event before the workshop start time, your instances may not be available yet. Don’t worry, they will be provided once the workshop begins.

Additionally, you have been invited to a Splunk Observability Cloud workshop organization. The invitation includes a link to the environment. If you don’t have a Splunk Observability Cloud account already, you will be asked to create one. If you already have one, you can log in to the instance and, you will see the workshop organization in your available organizations.