Dashboards & Visualizations

Is it possible to create a custom API token for the HTTP Event Collector?

mholden37
Engager

Is it possible to create a custom API token for the HTTP Event Collector?

I need to use a token from the other system in order for the integration to work and I want to know if I can hard code my http input to use that token. The token that I would be is a different format from the format that Splunk randomly generates.

0 Karma

sloshburch
Ultra Champion

@mholden37: I understand that the other system generates a token but it sounds to me like the token is meant for a different purpose. What has led you to believe the token is the one Splunk needs for HEC? Please provide specific links to the related token documentation from that other system (the one sending data to Splunk).

0 Karma

mholden37
Engager

Yes our environment is self-managed in AWS.

We need to hard code a token from another system because they generate a token that needs to be passed. We have already tried and have not gotten any data in.

0 Karma

sloshburch
Ultra Champion

Let us know the following so we can help out:

  • Why do you need to hard code a token from another system? It seems odd that the other system already has this arbitrary field defined. We should make sure your not conflating two different things from different solutions that might have the same name.
  • What have you tried already and what was the result? Any error messages? Any data coming in at all? (please make sure you're testing this out in a lab or your local instance).
0 Karma

sloshburch
Ultra Champion

I see you tagged splunk-cloud but I believe your environment is NOT splunk-cloud (self-managed in AWS). Right?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Developer Spotlight with Eduard Lekanne

From Network Engineer to Building Agentic AI for Splunk Eduard Lekanne has been architecting technology ...

From Data Landing to Insight

Search Across More of Your Data Ecosystem The data you need may live in Splunk, high-volume machine data, ...

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...