<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk MCP Server in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/752899#M23070</link>
    <description>&lt;P class=""&gt;We are currently implementing MCP (Model Context Protocol) for our daily operations with Splunk Enterprise on-premise. I need to clarify the architecture and access patterns for our setup:&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Challenges:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Token Provisioning:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;How should admins provision tokens to different teams for MCP access?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;MCP Splunk Hosting:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;What's the recommended approach to host MCP server for Splunk integration?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Cross-Team Access:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;How can we enable other teams to access our MCP Splunk instance?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;VS Code Integration:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;What's the proper way to connect VS Code → Augment → Splunk MCP?&lt;BR /&gt;&lt;BR /&gt;Any Help on this ?&lt;/LI&gt;&lt;/OL&gt;</description>
    <pubDate>Wed, 10 Sep 2025 09:41:12 GMT</pubDate>
    <dc:creator>Narendra_Rao</dc:creator>
    <dc:date>2025-09-10T09:41:12Z</dc:date>
    <item>
      <title>Splunk MCP Server</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/750634#M22738</link>
      <description>&lt;DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;I'm working on observability tooling and have built a MCP bridge that routes queries / Admin activities for splunk along with several other tools .&lt;BR /&gt;&lt;BR /&gt;How do i get if their is some existing MCP's built already for splunk and move way ahead?&lt;BR /&gt;&lt;BR /&gt;Happy to collab!&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 29 Jul 2025 11:42:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/750634#M22738</guid>
      <dc:creator>Narendra_Rao</dc:creator>
      <dc:date>2025-07-29T11:42:43Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk MCP Server</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/750635#M22739</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/269068"&gt;@Narendra_Rao&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you’re looking for something for Splunk Cloud then check out&amp;nbsp;&lt;A href="https://www.splunk.com/en_us/blog/artificial-intelligence/unlock-the-power-of-splunk-cloud-platform-with-the-mcp-server.html" target="_blank"&gt;https://www.splunk.com/en_us/blog/artificial-intelligence/unlock-the-power-of-splunk-cloud-platform-with-the-mcp-server.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Having looked at the .conf25 sessions it sounds like there will be an official Splunk Enterprise MCP server released/announced then, for now it’s just cloud.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the meantime, back in April I built &lt;A href="https://github.com/livehybrid/splunk-mcp" target="_blank"&gt;https://github.com/livehybrid/splunk-mcp&lt;/A&gt; which I’ve been using with a couple of customers and currently testing a Splunk native app version which should be updated in GitHub soon.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Ultimately if you’re not in a hurry then it’s worth waiting to see what’s announced at Conf or using an existing open source version in the meantime.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":glowing_star:"&gt;🌟&lt;/span&gt; &lt;STRONG&gt;Did this answer help you? If so, please consider&lt;/STRONG&gt;:&lt;/P&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Adding karma to show it was useful&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Marking it as the solution if it resolved your issue&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Commenting if you need any clarification&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Your feedback encourages the volunteers in this community to continue contributing.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 11:59:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/750635#M22739</guid>
      <dc:creator>livehybrid</dc:creator>
      <dc:date>2025-07-29T11:59:35Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk MCP Server</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/752899#M23070</link>
      <description>&lt;P class=""&gt;We are currently implementing MCP (Model Context Protocol) for our daily operations with Splunk Enterprise on-premise. I need to clarify the architecture and access patterns for our setup:&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Current Challenges:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Token Provisioning:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;How should admins provision tokens to different teams for MCP access?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;MCP Splunk Hosting:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;What's the recommended approach to host MCP server for Splunk integration?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Cross-Team Access:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;How can we enable other teams to access our MCP Splunk instance?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;VS Code Integration:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;What's the proper way to connect VS Code → Augment → Splunk MCP?&lt;BR /&gt;&lt;BR /&gt;Any Help on this ?&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 10 Sep 2025 09:41:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-MCP-Server/m-p/752899#M23070</guid>
      <dc:creator>Narendra_Rao</dc:creator>
      <dc:date>2025-09-10T09:41:12Z</dc:date>
    </item>
  </channel>
</rss>

