Getting Data In

Search api configuration to query another instance of splunk?

nitsrini
Loves-to-Learn

https://docs.splunk.com/Documentation/Splunk/8.1.2/RESTTUT/RESTsearches i can see through search API provided by Splunk enterprise(on premise) , we can query the log data collected  by Splunk  via endpoints. 

Is there any way we can inject or query  data from one running Splunk enterprise to another through data from search API? Is there any configuration available for this use case ?

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 3)

Welcome back to Splunk Classroom Chronicles, our ongoing blog series that pulls back the curtain on Splunk ...

Operationalizing TDIR: Building a More Resilient, Scalable SOC

Optimizing SOC workflows with a unified, risk-based approach to Threat Detection, Investigation, and Response ...

Almost Too Eventful Assurance: Part 1

Modern IT and Network teams still struggle with too many alerts and isolating issues before they are notified. ...