Financial-Times / splunk-heroku

Support for Heroku log drains packaged as a Splunk app.
https://tech.in.ft.com/tech-topics/logging/splunk/logging-from-heroku
MIT License
2 stars 0 forks source link

Add specific source types #19

Closed sjparkinson closed 2 years ago

sjparkinson commented 2 years ago

Resolves #17.

Enabled field extraction for JSON based messages and adds additional source types for the various Heroku platform logs.

~I have a call with Splunk on Friday morning and want to run this past them.~

~This doesn't resolve the automatic JSON field extraction.~

Screenshots

Screenshot 2022-06-10 at 17 40 40 Screenshot 2022-06-10 at 17 43 00
sjparkinson commented 2 years ago

I haven't added a source type for the Heroku runtime metrics logs as they are a bit more complicated.

I'll raise that as an issue to work on in another pull request.

sjparkinson commented 2 years ago

@jonnangle mind taking on the review for this? Happy to run through any bits on a call too