#Random
This is a place to discuss all things outside of Splunk, its products, and its use cases.

FN1315 - Cover Your Assets: Protect Your Knowledge Objects from Yourself (and Others) - A Paychex story

sujamaskey2019
Loves-to-Learn Lots

I am trying to follow the instructions from this Splunk conf19: 

https://conf.splunk.com/watch/conf-online.html?search=FN1315#/

I am stuck where I need to update the auth token in CYA_Import_Splunk_Query 

I am using Okta with Splunk and distributed Splunk Search Heads. Any suggestions how I can get this working for the curl command to update/create the knowledge object files.

 

Tags (2)
0 Karma

efavreau
Motivator

@sujamaskey2019Thank you for reaching out, and for @ mentioning us. So weird that we didn't receive a notification for this question. I found it today by accident. Sorry for the late response.
We aren't familiar with Okta, but in reading up, there's some key items you'll need to discuss with your admins, regarding how you would get a token and rights to use the REST API in your environment.
For reference on what's needed token-wise, here's a link to Splunk Docs to discuss with your admin on the Splunk side of it: https://docs.splunk.com/Documentation/Splunk/Latest/Security/CreateAuthTokens

Best of luck!

###

If this reply helps you, an upvote would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...