Splunk Dev

How to configure REST input in Splunk Cloud?

abjuneja1
Engager

the target services exposes some REST APIs which allows the SIEM application to get the Audit and other Resources details.
The authentication mechanism is OAuth
This integration is supported in Splunk Enterprise, I want to check how it can be done in Splunk Cloud.

Tags (2)

jwsmith22
Explorer

I tried installing http://splunk-base.splunk.com/apps/90843/rest-api-modular-input manually, but it was rejected.

Since this has been asked here, I may create a ticket and see what they say.

0 Karma

p_gurav
Champion

Hi,

I am not sure about REST input. But you can try using HTTP Event Collector. Refer below documents:
http://docs.splunk.com/Documentation/SplunkCloud/7.0.0/Data/AboutHEC

0 Karma
Get Updates on the Splunk Community!

From Alert to Resolution: How Splunk Observability Helps SREs Navigate Critical ...

It's 3:17 AM, and your phone buzzes with an urgent alert. Wire transfer processing times have spiked, and ...

ATTENTION!! We’re MOVING (not really)

Hey, all! In an effort to keep this Slack workspace secure and also to make our new members' experience easy, ...

Splunk Admins: Build a Smarter Stack with These Must-See .conf25 Sessions

  Whether you're running a complex Splunk deployment or just getting your bearings as a new admin, .conf25 ...