Getting Data In

Global setting missing in Splunk Cloud HTTP event collector?

mikeaston
Engager

Hi,

I'm setting up an integration test between a third-party app and Splunk Cloud trail using an HTTP event collector.
I have done this several times before without issue, but this time I can't find the Global setting dialog to enable the tokens.

I've looked in settings->data input->event collector but the page has no link to the Global setting dialog. Has it moved?

Mike

Labels (1)
1 Solution

zquiring01
Engager

Hey @mikeaston,

Noticed the same issue on my end as well. After communicating with support, it sounds like the HEC enable/disable functionality has been disabled by default for self-service Splunk Cloud trials, with no direct way to enable via the UI. Meaning, there is no way to utilize HEC endpoints for self-service trials at the moment. The team is working to address the issue, but there is currently no timeline for an update.

Cheers,

ZQ

View solution in original post

mvonga
New Member

I am into same situation using splunk free 15 days trial and wanted to explore HEC. It seems it is disable by default do you have any way to enable it?

0 Karma

zquiring01
Engager

Hey @mikeaston,

Noticed the same issue on my end as well. After communicating with support, it sounds like the HEC enable/disable functionality has been disabled by default for self-service Splunk Cloud trials, with no direct way to enable via the UI. Meaning, there is no way to utilize HEC endpoints for self-service trials at the moment. The team is working to address the issue, but there is currently no timeline for an update.

Cheers,

ZQ

mikeaston
Engager

Disappointing but thanks.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...