Splunk Cloud Platform

Is it possible to use KV Store on Splunk Cloud to read and write values?

pgadzhev
Engager

I am trying to build a modular data input using the Splunk Add-on Builder and the input should be statefull - it should keep track of its progress.

The Splunk Add-on Builder supports such checks and they're called checkpoints. When reading the documentation it is stated that this technique employs KV Store.

However, the Splunk Cloud documentation itself states that the KV Store REST API endpoints cannot be used, which means that any script using the Splunk SDK would not be able to operate with the KV Store collections.

Am i wrong with interpreting the documentation and thinking that KV Store CRUD operations (using the REST API) are not allowed on Splunk Cloud?

If KV Store is not an option to persist state on Splunk Cloud, is there an any other way to do it?

Thanks!

SteveM-905
Loves-to-Learn

Still wondering here?

0 Karma

bowesmana
SplunkTrust
SplunkTrust

Did you resolve this? We have a similar issue with KV store and REST API.

0 Karma

marcoscala
Builder
 
0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...