Telegraf is a open source tool that is used for collecting metrics from a variety of inputs, including system data (CPU, memory, disk, and network), docker, MySQL, etc. Telegraf (as of v1.8) supports a "splunkmetric" serializer for native ingest into Splunk's metric store using a variety of Telegraf's output modules, including file outputs, and HTTP with the ability to include HEC-required fields. Telegraf can be deployed as a stand-alone daemon or as a Splunk application that can be pushed out from deployers, masters, and the like. We'll investigate the various integrations with Telegraf and Splunk including using Telegraf as the system to feed Splunk's App for Infrastructure (in lieu of collectd), custom dashboards, as well as integrations with ITSI. With Telegraf's multitude of inputs, outputs, and a nearly universal run-time, it's a fantastic tool to add to your system monitoring workflows.
Slides PDF link - https://conf.splunk.com/files/2019/slides/IT1258.pdf?podcast=1577146211