icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

We are working on something new...

A Fresh New Splunkbase
We are designing a New Splunkbase to improve search and discoverability of apps. Check out our new and improved features like Categories and Collections. New Splunkbase is currently in preview mode, as it is under active development. We welcome you to navigate New Splunkbase and give us feedback.
Splunkbase will be undergoing a scheduled migration and will be unavailable on Saturday, Oct 1, 2022, from 11AM to 3PM PDT

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Instana App for Splunk
SHA256 checksum (instana-app-for-splunk_200.tgz) 8d73058aa2e09c8113e7777c9cfe190b84558a5622604a227d449e1a5ebfaadb SHA256 checksum (instana-app-for-splunk_103.tgz) eecc4190cd4215ef80737ac683449db49d9be3b2fd9f0594800310ec4aedd4db SHA256 checksum (instana-app-for-splunk_102.tgz) 61d1b2bd02ce47062e43a25770bc1e91bc1082e0b7bbd47a922335d750de5243
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate


Instana App for Splunk

Splunk Cloud
This app has been archived. Learn more about app archiving.
The Instana App for Splunk works together with the Instana Add-on for Splunk and provides a set of dashboards to visualize Instana data in Splunk. This app allows you to apply predictive analytics to your APM data and correlate Instana data with all of your other data (wire data, logs, server data, infrastructure data, etc.) in Splunk.

Instana App for Splunk

What's New in version 2.0.0?

This version has been update to use the new Instana APIs for metrics. Issues will be ported in the near future.
This Add-On is now written and supported by Instana directly.

What's Needed?

Instana Performance Metrics Configuration


The installation consists of installing both the Instana Add-on for Splunk and the Instana App for Splunk.
- The Add-on is responsible for executing the rest API calls and collecting the data from Instana.
- The App provides a collection of dashboards and saved searches.

To install, navigate to Apps --> Manage Apps and select the “Install app from File” button. Specify the location of the file you downloaded and install it.


The Instana Add-on for Splunk contains a global configuration for your Instana account URL and API authorization token.

Enter those values on the Configuration tab in the Add-on. You will find the settings in the Add-On Settings tab.

Next, create a new Input for the data you wish to collect via the Inputs menu -> Create New Input option. Each Input requires 4 parameters:
- Input Name
- Pollling interval
- Splunk Index to use
- Instana search filter that you would like to run (you can copy this directly from Instana's search bar)

To retrieve metrics for all web applications and websites use this filter:

entity.pluginId:logicalwebapp OR entity.pluginId:browserLogicalService

To retrieve metrics for all databases:


Note: This Add-on can be used for entities (Instana Snapshots) that contains the following 4 metrics:
- latency ==> Average Response Time
- count ==> Calls per second
- error_rate ==> Error Rate
- instances ==> number of instances running this entity

Start Searching

Once the Instana Add-on for Splunk is installed and configured you can execute searches using:


Sending Instana Issues to Splunk

Instana automatically monitors for "Issues" within your monitored environment. To have Instana send Splunk Notifications when Issues are triggered, you will setup 2 components; a Splunk HEC Token and an Instana Alerting Integration for Splunk.

Splunk HTTP Event Collector (HEC) Token

  • In Splunk, navigate to Settings --> HTTP Event Collector and create a "New Token". Note the token value as you'll need to use that in the Instana Alerting Integration.

Instana Alerting Integration for Splunk

  • In Instana, configure an "Integration" in your user "Settings". You can find this in your User Account in the upper right corner of the website. Follow the menus from Settings --> Alerting --> Integration then click on the Splunk button. Once here enter the URL for your Splunk server (https://<Your_Splunk_Server>:8088/services/collector) and the Splunk HEC token you created above.
  • To configure which events are sent to Splunk go to Settings --> Alerting --> Configurations and select the event types and optionally define a filter, then select the Splunk integration.

Now, when Instana triggers an issue, it will be automatically sent to Splunk!

Start Searching

Start Searching using:


Release Notes

Version 2.0.0
Sept. 24, 2019

Version 2.0.0:
This Integration is now being maintained by Evgeni Wachnowezki of Instana (evgeni.wachnowezki@instana.com).
This version utilizes the latest Instana APIs to collect metrics and ingest them into Splunk.
The Issues data collection has not yet been migrated over, but that will come in a subsequent release.

Version 1.0.3
June 28, 2018

Updated Issues dashboard to support native Splunk integration released in Instana July 2018.

Version 1.0.2
May 25, 2018

Initial Release.

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk Inc. in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.