If you need something for POC / smoke: https://github.com/m3047/shodohflo/blob/master/examples/dnstap2json.py
Assuming you can figure out how to get Splunk to consume log oriented json over UDP...
-- Fred Morris, internet plumber -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users