Getting Data In

UID/PWD to use for Cloud API requests

tjago11
Communicator

I was able to get the API functionality to work from a local instance, but having trouble with the Cloud Instance.

curl -v -k -u username https://input-instance.cloud.splunk.com:8089/services/messages

I keep getting an "Unauthorized" response back, things I tried:
-UID from setting up the splunk account
-My first name
-admin

Also tried a couple different passwords but no joy. Any help is appreciated, thanks.

p.s.
Using the trial version.

0 Karma
1 Solution

tjago11
Communicator

Looks like this is dead in the water:
http://docs.splunk.com/Documentation/SplunkCloud/6.6.0/User/Admintasks

To use the REST API, you must have a paid subscription to Splunk Cloud.

Boooooo!!!!

View solution in original post

0 Karma

tjago11
Communicator

Looks like this is dead in the water:
http://docs.splunk.com/Documentation/SplunkCloud/6.6.0/User/Admintasks

To use the REST API, you must have a paid subscription to Splunk Cloud.

Boooooo!!!!

0 Karma

jkat54
SplunkTrust
SplunkTrust
0 Karma

tjago11
Communicator

Yep, read that document but it doesn't mention "what" account to use. My user account and the generic 'admin' account do not seem to work.

0 Karma

jkat54
SplunkTrust
SplunkTrust
Splunk users must have role and/or capability-based authorization to use REST endpoints. Users with an administrative role, such as admin, can access authorization information in Splunk Web. To view the roles assigned to a user, select Settings > Access controls and click Users. To determine the capabilities assigned to a role, select Settings > Access controls and click Roles.
0 Karma

jkat54
SplunkTrust
SplunkTrust

I think your admin should work but you might like to check to see if your admin is added to the admin role

0 Karma
Get Updates on the Splunk Community!

See Splunk Platform & Observability Innovations at Cisco Live EMEA

Hi Splunkers, Learn about what’s next for Splunk Platform at Cisco Live EMEA.  Data silos are a big challenge ...

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...