Getting Data In

Is it possible for Splunk to make a REST call?

rmasuoka
Explorer

I would like to make a REST call from Splunk. I know there are Splunk REST APIs that we can make REST calls into Splunk, but not those ones. I would like to make a REST call into other systems as a part of Splunk search. Thanks!

Tags (1)
0 Karma

satishsdange
Builder

Search query depends upon the nature of data & what you would like to interpret from that.
Few customers are pulling ticketing information, few are pulling performance counters. Hence there is no definite answer to your question.
But search processing language remains the same e.g. stats, chart, eval, timechart etc.

0 Karma

musskopf
Builder

Have a look on this App: https://apps.splunk.com/app/1546

It's more to use external APIs as INPUT, but if you really need to call a REST API form the search, you might need to write a custom search command for that.

0 Karma

rmasuoka
Explorer

Thanks. I checked the document of the App and it seems what I need. However, I could not find any example search using this capability. Does anyone happen to know where I can find those example searches using REST API Modular Input?

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...