Getting Data In

I already have a source of gauged metrics accessible by http. How can Splunk PULL those?

gurpal2000
New Member

I already have a source of gauged metrics accessible by http. How can Splunk PULL those?

I cannot PUSH those metrics. They look like this when the endpoint is invoked:

metric_a 10.0
metric_b 0.02
metric_c v.12

The metrics are evaluated at the point of invocation. There is no log file (nor do I want to log to a file).

I can change the format of the http response. For example it could resemble a log4j output or some json structure...

Does Splunk support this out of the box? which version? Do i need a 3rd party plugin? what do you recommend?

cheers

0 Karma

Sukisen1981
Champion

the simplest solution is to go for a scripted input and invoke the api as a python batch script.
look it up here - https://docs.splunk.com/Documentation/Splunk/7.3.0/AdvancedDev/ScriptedInputsIntro

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...