Splunk Cloud Platform

Webhook Action

RahulMisra1
Explorer

I am trying to setup Webhook action to send IP form a search to Akamai.  Need help in writng the webhook

Labels (1)
0 Karma

marnall
Motivator

In Splunk, the webhook Alert action accepts a single endpoint value to which to send the webhook. If you create an alert, then you can view it in Settings->"Searches, Reports, and Alerts", click the "Edit" dropdown, then click "Advanced Edit", then scroll down to the fields of "action.webhook". Here you can specify more settings for your webhook.

As for sending a webhook for Akamai, do you have documentation describing what the webhook should look like? If I understand correctly, you would like Splunk to have an alert which sends a webhook to Akamai that contains an IP, from a field in the alert.

0 Karma
Get Updates on the Splunk Community!

Detecting Brute Force Account Takeover Fraud with Splunk

This article is the second in a three-part series exploring advanced fraud detection techniques using Splunk. ...

Buttercup Games: Further Dashboarding Techniques (Part 9)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...

Buttercup Games: Further Dashboarding Techniques (Part 8)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...