Getting Data In

How can I ask HTTP/HTTPS GET request to REST and output response to Splunk?

slipinski
Path Finder

I use Splunk Cloud so I can't use Splunk REST API Modular Input. On my instance I'm not able to browse REST in data inputs.
Is any option to deal with outside REST data?
Would you be so kind to answer me?

Szymon

Tags (3)
0 Karma

jkat54
SplunkTrust
SplunkTrust

For that you should use the HTTP Event Collector (HEC).

It’s basically REST inputs with pre shared keys.

http://docs.splunk.com/Documentation/Splunk/7.1.2/Data/UsetheHTTPEventCollector

0 Karma

aivarson_splunk
Splunk Employee
Splunk Employee

Currently, the best way to do this is with a Splunk Heavy Forwarder. The HF can be at your site or in any Cloud provider (AWS, Azure, etc.) then push the data to your SplunkCloud instance.

0 Karma
Get Updates on the Splunk Community!

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...

Brains, Bytes, and Boston: Learn from the Best at .conf25

When you think of Boston, you might picture colonial charm, world-class universities, or even the crack of a ...