Getting Data In

How to enable rest-api?

rajanshrivastav
Path Finder

Hi Team,

I'm running Splunk on AWS ec2 instance backed by AWS ALB.
I've created target group for port 80,443 & 8089 for splunk. Security groups & network ACL are already opened for these ports.
But whenever I do "curl -k http://localhost:8089/en-us",
it says -- "curl: (56) Recv failure: Connection reset by peer"

I'm accessing it as a root user , also I've admin credentials as well.

Please let me know how I can access this port, I've a requirement to enable rest-api. I checked for other articles but I didn't find any satisfactory answers. I got to know that rest-api works for everyone, but in my case it is not working.

Please help me enabling rest-api features.

Thanks,

0 Karma

MuS
SplunkTrust
SplunkTrust

Hi rajanshrivastav786,

But whenever I do "curl -k
http://localhost:8089/en-us",
Your problem is that you are using port 8089 AND http, the management port and therefore the REST API uses SSL by default.

Just use curl -k https://localhost:8089/ instead and it works.

cheers, MuS

inventsekar
SplunkTrust
SplunkTrust

As per my knowledge, there is no enable/disable for rest API.
(Maybe, roles/capabilities issue can occur)

To verify, Simply run...(replace the admin:changeme to your username:password)

curl -k -u admin:changeme https://localhost:8089/services/search/jobs --data-urlencode 'search=search index="_internal" | head 1'

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma

rajanshrivastav
Path Finder

After running above command, it is showing following result-

1536009195.1426

0 Karma

rajanshrivastav
Path Finder

"

1536009195.1426

"

0 Karma

rajanshrivastav
Path Finder

Blockquote

1536009195.1426

Blockquote

0 Karma
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...