The Splunk Firehose Nozzle for Tanzu was developed as an application that runs with Tanzu Application Service (TAS). The Nozzle subscribes to the Loggregator endpoint and writes events to an external Splunk environment.
- The Splunk Firehose Nozzle for Tanzu collects events from the Tanzu Loggregator endpoint and streams them to Splunk via HTTP event collector (HEC). Nozzle has in-memory queue buffers to increase reliability, and has parallel client to scale out multiple ingestion channels to HEC.
- The Splunk Firehose Nozzle for Tanzu can be deployed natively within a TAS environment and is available as a free tile from Tanzu.
- The Splunk HTTP Event Collector clients run concurrently, consuming events from the queue to enrich Tanzu events by attaching metadata fields. For scaling out, add as many HECs and place a load balancer in front.
- After data has been ingested into Splunk, it can be explored using the Splunk Add-on for Cloud Foundry—an add-on to Splunk Enterprise which parses data from any Cloud Foundry distribution—which includes pre-built panels and pre-configured search parameters.