Hi all,
I found an integration method for forwarding SCOM data into Splunk:
http://splunk-base.splunk.com/apps/22380/scom-system-center-operations-manager-integration
Unfortunately this is still the SCOM 2007 version and nowadays SCOM 2012 is the standard.
Has this connector been updated by someone?
Who can give me some more info on this?
Thanks!
Filip
we're testing the scom to splunk app on SCOM 2012 R2 and its working but we're also missing events
Did you end up trying this out? We are looking to Import our SCOM 2012 into our Splunk.
I've found a couple ways that this can be accomplished by myself though.. By using http://capacitas.wordpress.com/2012/12/05/retrieving-data-from-the-scom-database/ to extract the data. And by using ACS to create our own logs. http://social.technet.microsoft.com/Forums/systemcenter/en-US/77c20684-8c7b-434a-8354-8340660f98e1/s...
This app is not maintained by Splunk.
But it uses SCOM Powershell API, which should've been compatible with the 2007 API, however I'm not really sure about this.
Did you try to run it with SCOM 2012 and saw any errors?