Back
Author
Jad Naous
LAST UPDATED
July 7, 2026
Description
Grepr receives logs from Splunk Heavy Forwarders via S2S, compresses data by 90% while retaining everything in a queryable data lake with SPL support and one-click backfill to Splunk when needed.
Product Features

How to Deploy Grepr with Splunk: Reduce Log Costs by 90%

Blog post featured image
IN THIS ARTICLE
SHARE
Keep up with Grepr
Subscribe now for best practices, research reports, and more..

In this video we highlight Grepr's ability to work with Splunk. We have Grepr receiving data from Splunk Heavy Forwarders using S2S. We configure Splunk to reduce the data and forward it to Splunk. Grepr massively compresses the logs passing through, but the logs are still in the Grepr data lake. They can be queried using SPL, and sent back to Splunk with a manual backfill if needed. You can also see this compressed data stream in Splunk, and if you want to see the raw data that corresponds to a summary message, you can use the embedded link in summary messages to quickly get to it.

Ready to reduce your observability TCO by 75%?
SHARE
Keep up with Grepr
Subscribe now for best practices, research reports, and more..