Getting Data In

How to send rest API data to Splunk?

rockzers
Path Finder

(New splunk user)

I want to use the Cyberark Rest Api login event for Splunk. So is there a way to access Rest API data directly from Splunk?
or 
Do I need to use Rest Api, some programming like Python to get the data and then send the splunk? or direct rest api endpoint binding to use in splunk install available?

Is there any idea about this flowchart to connect Splunk?


 

Labels (1)
Tags (2)
0 Karma

inventsekar
SplunkTrust
SplunkTrust

Hi @rockzers .. this should be easily do-able.. please check this:

https://www.splunk.com/en_us/blog/tips-and-tricks/getting-data-from-your-rest-apis-into-splunk.html

 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma

rockzers
Path Finder

Hi @inventsekar 

but this post was published in 2013 and those instructions don't work and they posted some links but it doesn't work and there is no clear information there

0 Karma

inventsekar
SplunkTrust
SplunkTrust

Please check this docs:

https://docs.splunk.com/Documentation/Splunk/9.0.0/Data/Getdatafromscriptedinputs

 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...