How to integrate your K8s Artifactory logs with Splunk?

Shai Ben-Zvi
2019-12-19 11:45

Subject 

How to integrate your Kubernetes Artifactory cluster logs into Splunk?

Description

If you are using Splunk in your company, you may probably want to ship your Artifactory logs to it.
A common use-case when using Kubernetes is to push logs to files that ends with stdout stderr on a pod to Splunk.  

Instructions

Artifactory logs are managed by logback.xml file which can be found under the $ARTIFACTORY_HOME/etc folder.
The logback.xml also controls where Artifactory stores its logs using appenders.
You may simply add another appender to push everything to an stdout log file so it will be picked up by the external Splunk forwarder.