Getting Data In

Splunk REST API

kpavan
Path Finder

Hi All,

Need help regarding Splunk REST API.

Requirement:
Currently we are getting logs from application where it has info about user login details. Now application team wants to integrate Splunk logs to salesforce using via REST API. Like if app team wants to check user login details from Salesforce console using user ID then salesforce need to query Splunk to get the latest 5 user login events.

I am able to query splunk via cURL and getting the info, but since have very less experience in programming and want to know if anyone has already similar setup and if you could share the details how to setup Splunk REST API with step by step that would be helpful for me.

Thanks!

0 Karma

paramagurukarth
Builder

You can use splunk SDK corresponding to the programming language you are using in your project...
Establishing connection.. Executing searches and accessing other object can be done.. Also it will reduce your coding efforts..

0 Karma

niketn
Legend

Refer to Splunk How To Video on Using the Splunk REST API for quick understanding.

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...