insights
2023.10
false
- Getting Started
- Access and Permissions
- Interacting with Insights
- Automation Hub Integration
- Historical data export
- Logs
- Performance and Scalability
- Real-time data export
- Overview
- Preparing Splunk
- Configure real-time data export to Splunk
- Real Time Data Export Data Model
Insights user guide
Last updated May 7, 2026
Note:
Before you start, make sure that Real-time data export is enabled. To do this, check the Enabling or Disabling Insights section of the Managing Products page from the Automation Suite guide.
-
Go to the Automation Suite Administration page.
-
From the tenants list, select the tenant in which you want to enable real-time data export.
-
Select Services.
-
Click on the three-dot icon (⁝) from the Insights tile.
-
Select Configure Real-time Data Export from the drop-down list.
-
Add the Splunk endpoint and the HTTP Event Colletor (HEC) token. a. Fill in the HEC token from the Preparing Splunk procedure. b. Fill in the Splunk endpoint. This has the following format:
https://{splunk endpoint}:{hec port}. c. Fill in the port information:- If you are using Splunk Enterprise (on-premises), the port is
8088. - If you are using Splunk Cloud trial, the port is
8088. - If you are using Splunk Cloud, a port number is not needed. Use
443in this case. - If you configured an HEC port number, use the configured port.
- If you are using Splunk Enterprise (on-premises), the port is