Splunk Dev

Beginner API call with python

yonphang
Explorer

Hi Splunk Community,

 

I have a list of IP that returned from a search, and would like to parse line by line and do a POST api call to third party and display it on the dashboard in realtime.  Im including IP in the POST API and receiving reputation of the IP back.

 

I read the splunk doc but was confused with saved search, sid and etcs.  Can anyone please help me elaborate the steps i need to take to make it happened?  I have knowledge in Python and Bash

 

Example of my API call.

curl -X POST "httpx://api.3rdparty.com/ "Token: 12ab3a1d81124cc323249c7d1c723e39 -i "99.101.22.33"

 

Thank you.  Im new to Splunk development, please be kind 🙂

 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...