<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Gsuite App for splunk in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334298#M40156</link>
    <description>&lt;P&gt;In g suite App , &lt;BR /&gt;
1) What all data it will pull from G suite in to splunk?&lt;BR /&gt;
2) In Applicationn Configuration , what will be the Google Apps Domain ? is it  &lt;A href="https://console.developers.google.com/"&gt;https://console.developers.google.com/&lt;/A&gt; ? &lt;BR /&gt;
3) what will be Client ID or client secret for application like Docs or email ? is it gusite Super admin credentials only?&lt;BR /&gt;
4) If application configuration requires super admin credentials of g suite then what is in the create new credentials ? it will also have super admin of gsuite if yes then what is the difference ? &lt;/P&gt;</description>
    <pubDate>Wed, 07 Mar 2018 15:55:22 GMT</pubDate>
    <dc:creator>splunk24</dc:creator>
    <dc:date>2018-03-07T15:55:22Z</dc:date>
    <item>
      <title>Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334298#M40156</link>
      <description>&lt;P&gt;In g suite App , &lt;BR /&gt;
1) What all data it will pull from G suite in to splunk?&lt;BR /&gt;
2) In Applicationn Configuration , what will be the Google Apps Domain ? is it  &lt;A href="https://console.developers.google.com/"&gt;https://console.developers.google.com/&lt;/A&gt; ? &lt;BR /&gt;
3) what will be Client ID or client secret for application like Docs or email ? is it gusite Super admin credentials only?&lt;BR /&gt;
4) If application configuration requires super admin credentials of g suite then what is in the create new credentials ? it will also have super admin of gsuite if yes then what is the difference ? &lt;/P&gt;</description>
      <pubDate>Wed, 07 Mar 2018 15:55:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334298#M40156</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-07T15:55:22Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334299#M40157</link>
      <description>&lt;P&gt;Hi @splunk24, &lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;Please see full documentation under "User Guide",  &lt;A href="https://splunkbase.splunk.com/app/3791/#/details"&gt;https://splunkbase.splunk.com/app/3791/#/details&lt;/A&gt; . There is quite a lot it can pull, and suggestions are always welcome.&lt;/LI&gt;
&lt;LI&gt;This is YOUR domain (whatever G Suite Domain it might be. An example is "yahoo.co.in").&lt;/LI&gt;
&lt;LI&gt;You need to obtain a Client ID and Secret from the &lt;A href="https://console.developers.google.com"&gt;Developer's console&lt;/A&gt; . Follow the Instructions in the User's Guide.&lt;/LI&gt;
&lt;LI&gt;The "Create New Credentials" is used to interact with Splunk's Encrypted Credential Store. Do not do anything there unless you are familiar with the Encrypted Credential Store. You need to Authorize the app, and set up the input. See the extensive documentation.&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;As mentioned in my email, YOU NEED TO READ THE DOCUMENTATION. If you need further help, try getting on Slack (splk.it/slack) and ping me directly. The setup is not overly complicated, just follow the steps. Thanks! &lt;/P&gt;</description>
      <pubDate>Wed, 07 Mar 2018 16:46:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334299#M40157</guid>
      <dc:creator>alacercogitatus</dc:creator>
      <dc:date>2018-03-07T16:46:37Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334300#M40158</link>
      <description>&lt;P&gt;As per the docs , &lt;BR /&gt;
You must have enabled the Google Apps API - Super Admin user will enable it i believe&lt;BR /&gt;
You must have configured a credential for use with this App - So at console.developers we can have a seperate credentials which we will use for g suite app ? right ?&lt;/P&gt;

&lt;P&gt;You must AUTHORIZE this app to make requests into Google Apps APIs. - how to authorize? if it is application configuration only then Google Apps Domain will be our company.com but we want to pull only &lt;BR /&gt;
email or docs data . there is not a API project as such so what will be the client id and secret?&lt;/P&gt;

&lt;P&gt;so i do not need to create new proxy , create new credential &lt;/P&gt;

&lt;P&gt;so how splunk will get authorize to  see or pull data from g suite?&lt;/P&gt;</description>
      <pubDate>Wed, 07 Mar 2018 20:33:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334300#M40158</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-07T20:33:49Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334301#M40159</link>
      <description>&lt;P&gt;@splunk24 - I suggest you get your Google Admin in the room. You need a few things.&lt;BR /&gt;
1) a Google User with Super Admin privs.&lt;BR /&gt;
2) An API Project from console.developers.google.com with a Client ID and Secret. Generate it. It's right there in the console.&lt;BR /&gt;
3) Authorize the app - I've provided the workflow on the Application Configuration Page. This is straightforward, input your tokens and domain, click the button, authorize the api calls (check for adblocker), and then put the auth token in the box, and click the button again. Standard OAUTH workflow.&lt;BR /&gt;
4) Create an Input. Click the checkboxes you want.&lt;/P&gt;

&lt;P&gt;Again - THIS DOES NOT PULL EMAIL ANYTHING. That is a cumbersome mess I haven't figured out yet.&lt;BR /&gt;
Again - this is in the documentation. Have you tried any of this yet? It appears you haven't, so please try any of the steps and then ask more questions based on trial/error that you receive.&lt;/P&gt;</description>
      <pubDate>Wed, 07 Mar 2018 20:40:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334301#M40159</guid>
      <dc:creator>alacercogitatus</dc:creator>
      <dc:date>2018-03-07T20:40:52Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334302#M40160</link>
      <description>&lt;P&gt;ok will try that .&lt;BR /&gt;
may i know the port number to authenticate the client id or secert from splunk to g suite ? &lt;BR /&gt;
and data will come to splunk in which port ? i need to open the ports for firewall &lt;/P&gt;</description>
      <pubDate>Thu, 08 Mar 2018 21:34:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334302#M40160</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-08T21:34:53Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334303#M40161</link>
      <description>&lt;P&gt;create client id lands mein to this option &lt;BR /&gt;
Application type&lt;/P&gt;

&lt;P&gt;Web application &lt;BR /&gt;
Android Learn more&lt;/P&gt;

&lt;P&gt;Chrome App Learn more&lt;/P&gt;

&lt;P&gt;iOS Learn more&lt;/P&gt;

&lt;P&gt;PlayStation 4 &lt;BR /&gt;
Other&lt;/P&gt;

&lt;P&gt;but i want data from g drive only? then which one to select&lt;/P&gt;</description>
      <pubDate>Thu, 08 Mar 2018 21:37:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334303#M40161</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-08T21:37:10Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334304#M40162</link>
      <description>&lt;P&gt;and what to be enter here &lt;/P&gt;

&lt;P&gt;Enter JavaScript origins, redirect URIs or both&lt;/P&gt;

&lt;P&gt;Authorised JavaScript origins&lt;BR /&gt;
For use with requests from a browser. This is the origin URI of the client application. It cannot contain a wildcard (https://*.example.com) or a path (&lt;A href="https://example.com/subdir"&gt;https://example.com/subdir&lt;/A&gt;). If you're using a non-standard port, you must include it in the origin URI.&lt;/P&gt;

&lt;P&gt;Authorised redirect URIs&lt;BR /&gt;
For use with requests from a web server. This is the path in your application that users are redirected to after they have authenticated with Google. The path will be appended with the authorisation code for access. Must have a protocol. Cannot contain URL fragments or relative paths. Cannot be a public IP address.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Mar 2018 21:50:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334304#M40162</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-08T21:50:18Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334305#M40163</link>
      <description>&lt;P&gt;@alacercogitatus please respond&lt;/P&gt;</description>
      <pubDate>Fri, 09 Mar 2018 21:08:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334305#M40163</guid>
      <dc:creator>splunk24</dc:creator>
      <dc:date>2018-03-09T21:08:52Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334306#M40164</link>
      <description>&lt;P&gt;Once there go through API Project -&amp;gt; APIs &amp;amp; Auth -&amp;gt; Credentials. Create Client ID -&amp;gt; &lt;STRONG&gt;Installed Application - Other&lt;/STRONG&gt;.&lt;/P&gt;

&lt;P&gt;This is not an option?&lt;/P&gt;

&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="alt text"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/4513iE1254490392A0FA3/image-size/large?v=v2&amp;amp;px=999" role="button" title="alt text" alt="alt text" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 May 2018 21:17:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334306#M40164</guid>
      <dc:creator>tpetersonalpine</dc:creator>
      <dc:date>2018-05-23T21:17:49Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334307#M40165</link>
      <description>&lt;P&gt;HI All - Have a question coming from Audit - Does the data at anytime traverse the app developers cloud instance or any external cloud instance other than google cloud platform ? Anybody has any idea? Thanks in advance ! &lt;/P&gt;</description>
      <pubDate>Thu, 17 Jan 2019 03:10:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334307#M40165</guid>
      <dc:creator>dmenon84</dc:creator>
      <dc:date>2019-01-17T03:10:24Z</dc:date>
    </item>
    <item>
      <title>Re: Gsuite App for splunk</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334308#M40166</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;

&lt;P&gt;After following the steps, i can see the following error in the splunk logs&lt;/P&gt;

&lt;P&gt;{   [-] &lt;BR /&gt;
     errors:    [   [-] &lt;BR /&gt;
        {   [-] &lt;BR /&gt;
         exception_arguments:    expected string or buffer&lt;BR /&gt;&lt;BR /&gt;
         exception_type:     TypeError&lt;BR /&gt;&lt;BR /&gt;
         filename:   ga.py&lt;BR /&gt;&lt;BR /&gt;
         input_name:     ga://Splunktest&lt;BR /&gt;&lt;BR /&gt;
         line:   103&lt;BR /&gt;&lt;BR /&gt;
         msg:    expected string or buffer&lt;BR /&gt;&lt;BR /&gt;
        }&lt;BR /&gt;&lt;BR /&gt;
    ]&lt;BR /&gt;&lt;BR /&gt;
     log_level:  ERROR&lt;BR /&gt;&lt;BR /&gt;
     modular_input_consumption_time:     Tue, 13 Aug 2019 07:15:20 +0000&lt;BR /&gt;&lt;BR /&gt;
     timestamp:  Tue, 13 Aug 2019 07:15:20 +0000    &lt;/P&gt;

&lt;P&gt;Can someone tell me what the issue could be?&lt;/P&gt;

&lt;P&gt;TIA&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 01:43:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Gsuite-App-for-splunk/m-p/334308#M40166</guid>
      <dc:creator>singhvishakha29</dc:creator>
      <dc:date>2020-09-30T01:43:08Z</dc:date>
    </item>
  </channel>
</rss>

