Skip to main content
This guide explains how to connect ResolveAI with Splunk Observability Cloud. Resolve uses this connection to ingest metrics, logs, dashboards and traces for incident investigations.

1. Create Org Access Token

In Splunk Observability Cloud, create an Org Access Token with API Permissions.
  1. Log in to Splunk Observability Cloud
  2. Click Settings in the left navigation
  3. Select Access Tokens under the Organization Settings section
  4. Click Create Token
  5. Under the Name and Scope tab:
    • Set the name to resolve-token or another appropriate name
    • Select API Token with Roles with read_only as the token scope
    • Click Next
  6. Under the Permissions tab:
    • Set the appropriate access token permission, Only Admins can read is the default
    • Click Next
  7. Under the Expiration tab:
    • Set the appropriate end date (1 year is recommended)
    • Click Create
  8. Click Copy to copy the token value and save it securely

New Relic integration setup in Resolve

2. Connect Splunk Observability

Set up the integration either in the Resolve UI or in the Satellite configuration.

Connect Via Resolve UI

  1. Open Splunk Observability Integration in Resolve
  2. Click Add Connection
  3. Enter a name (ex. Splunk-Observability-Main)
  4. Leave Environments blank to ingest data from all environments, or list specific ones that match your Satellite config
  5. Paste your Org Access Token from Step 1
  6. Enter your Realm (ex. us0, us1, eu0, etc.)
    • Your realm is visible in your Splunk Observability URL: app.<realm>.signalfx.com
  7. (Optional) Enable Sensitive Data Redaction
  8. Turn on the toggle Service Map Enabled
  9. Click Save