Getting Data In

Is it possible to pull data from a REST API to Splunk trial?

mpatterson
New Member

Hi all, 

I am trying to configure a REST API (OAuth) into a Splunk cloud trial environment. I'm running into issues and not seeing a clear way to pull this data in. I've tried using the HTTP event collector with no luck. 

I want to consume and search on the events that are pulled. Could this be a limitation on my cloud trial? Anything I'm missing? 

I did find an app called "REST API Modular Input" that seems to work with splunk enterprise, but not splunk cloud. is there a free equivalent on splunk cloud splunkbase?

Thanks,

Michelle

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

General guidance has been to run inputs on an on-prem heavy forwarder (HF) that forwards the data it collects to Splunk Cloud.  That changes with the Victoria experience, but is limited by apps that are approved for Cloud.  Unapproved apps have to be run on an HF.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...