Getting Data In

Is it possible to pull data from a REST API to Splunk trial?

mpatterson
New Member

Hi all, 

I am trying to configure a REST API (OAuth) into a Splunk cloud trial environment. I'm running into issues and not seeing a clear way to pull this data in. I've tried using the HTTP event collector with no luck. 

I want to consume and search on the events that are pulled. Could this be a limitation on my cloud trial? Anything I'm missing? 

I did find an app called "REST API Modular Input" that seems to work with splunk enterprise, but not splunk cloud. is there a free equivalent on splunk cloud splunkbase?

Thanks,

Michelle

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

General guidance has been to run inputs on an on-prem heavy forwarder (HF) that forwards the data it collects to Splunk Cloud.  That changes with the Victoria experience, but is limited by apps that are approved for Cloud.  Unapproved apps have to be run on an HF.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...