Splunk Cloud

Splunk Cloud User Manual

Download manual as PDF

Download topic as PDF

Types of Splunk Cloud deployment

Splunk Cloud is offered in two ways:

  • Self-service: You purchase Splunk Cloud directly from the Splunk website.
  • Managed: You work with Splunk Sales to obtain your Splunk Cloud deployment.


To determine whether your deployment is self-service or managed, look at the format of the URL you use to connect to Splunk Cloud:

  • Self-service:
    https://prd-*.cloud.splunk.com
  • Managed:
    https://*.splunkcloud.com

The following table lists details about the differences between managed and self-service deployments.

Feature Self-service Managed
Access your Splunk Cloud deployment Log into your Splunk account on the Splunk corporate web site (www.splunk.com) and go to the Access Instances page Using the URL you specified when you purchased Splunk Cloud from Splunk Sales. This URL is included in the Welcome email you received when your deployment was enabled for you.
Create inputs (including file uploads, HTML event ingestion, and app-related inputs) Configure forwarders on-premises or use Splunk Web Configure forwarders on-premises or contact Splunk Support
Data ingestion (daily maximum) 20GB Per your contract
Active Directory/Single sign-on integration Not supported Supported
AWS regions US East Multiple including GovCloud
Whitelist and blacklist IP addresses No Yes
Premium apps available Yes, but you might need to add capacity to your Splunk Cloud deployment, which entails additional costs. ("Premium" apps and add-ons are purchased from Splunk Sales, as opposed to free apps, which you can install without contacting Splunk Sales or Support.) Yes
Concurrent search limit 20 max Depends on the topology you purchase
REST API URL Use the following URL for self-service deployments. To get the required non-SAML user credentials, submit a support case. The URL format must include the "input-" prefix:
http://input-<deployment-name>.cloud.splunk.com:8089
Use the following URL for clustered deployments. If necessary, submit a support case to open port 8089 on your deployment. The "input-" prefix is not required:
https://<deployment-name>.splunkcloud.com:8089
PREVIOUS
Welcome to Splunk Cloud!
  NEXT
Getting started with Splunk Cloud

This documentation applies to the following versions of Splunk Cloud: 6.6.3, 7.0.0, 7.0.2, 7.0.3, 7.0.5, 7.1.3


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters