Getting Data In

Send data to HTTP Event Collector on Splunk Cloud instances

Kyryl
Engager

Hi everybody,

According to the official documentation the standard form for the HEC URI in self-service Splunk Cloud is as follows:

<protocol>://input-<host>:<port>/<endpoint>

However it fails and the form that does work is 

<protocol>://<host>:<port>/<endpoint>

I am on Splunk Cloud self-managed (trial).
Has anyone had a similar experience? Is it possible that the Splunk team has made some changes without updating the documentation?

Thank you!

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

It's possible.  Submit feedback on that documentation page and the docs team will investigate and make the necessary changes.

---
If this reply helps you, Karma would be appreciated.

Kyryl
Engager

Cool, will do.

I'd still appreciate if other people who had similar experiences could share 🙂

0 Karma
Get Updates on the Splunk Community!

Celebrating Fast Lane: 2025 Authorized Learning Partner of the Year

At .conf25, Splunk proudly recognized Fast Lane as the 2025 Authorized Learning Partner of the Year. This ...

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...