Knowledge Management

Splunk REST APIs

akshada_s
New Member

Hi Team

I am new to Splunk and looking for a way to Fetch few metrics data from Splunk using Splunk REST API.
Can you please help me with right approach to implement the same?

I have explored 2 ways so far:
1. Using Search Job endpoints (Trying out this way is in-progress)
2. Using search queries within scripts

If you can help with pro's n cons of above methods, also if any other way which will be appropriate one, it would be helpful.
I am looking for best way to develop these APIs, so can get the result stored into files\database.

Any inputs would be really appreciated.

Thanks in advance!
Akshada

 

0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@akshada_s - If you are trying to run Splunk search from outside the script then jobs endpoint is usually the answer.

Find more info here - https://docs.splunk.com/Documentation/Splunk/9.1.1/RESTTUT/RESTsearches

 

I hope this helps!!!

0 Karma
Get Updates on the Splunk Community!

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Community Content Calendar, October Edition

Welcome to the October edition of our Community Spotlight! The Splunk Community is a treasure trove of ...