Getting Data In

Global setting missing in Splunk Cloud HTTP event collector?

mikeaston
Engager

Hi,

I'm setting up an integration test between a third-party app and Splunk Cloud trail using an HTTP event collector.
I have done this several times before without issue, but this time I can't find the Global setting dialog to enable the tokens.

I've looked in settings->data input->event collector but the page has no link to the Global setting dialog. Has it moved?

Mike

Labels (1)
1 Solution

zquiring01
Engager

Hey @mikeaston,

Noticed the same issue on my end as well. After communicating with support, it sounds like the HEC enable/disable functionality has been disabled by default for self-service Splunk Cloud trials, with no direct way to enable via the UI. Meaning, there is no way to utilize HEC endpoints for self-service trials at the moment. The team is working to address the issue, but there is currently no timeline for an update.

Cheers,

ZQ

View solution in original post

mvonga
New Member

I am into same situation using splunk free 15 days trial and wanted to explore HEC. It seems it is disable by default do you have any way to enable it?

0 Karma

zquiring01
Engager

Hey @mikeaston,

Noticed the same issue on my end as well. After communicating with support, it sounds like the HEC enable/disable functionality has been disabled by default for self-service Splunk Cloud trials, with no direct way to enable via the UI. Meaning, there is no way to utilize HEC endpoints for self-service trials at the moment. The team is working to address the issue, but there is currently no timeline for an update.

Cheers,

ZQ

mikeaston
Engager

Disappointing but thanks.

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...