Splunk Search

External data fetch w/curl (REST)

strangelaw
Explorer

I need to fetch some external data from various sources. WIth curl on command line this is relatively simple to do against server REST APIs. How I can do this in most simplified way (e.g. curl -get http://url/api/stats) along with Splunk search (or saved search/type)?

I have tried to put script under /script and run it via web - does not bring any data to designated index.

SO - I am stuck in here. Very simple instructions please w/this one.

1 Solution

Damien_Dallimor
Ultra Champion

Damien_Dallimor
Ultra Champion

Use the Splunk REST API Modular Input

strangelaw
Explorer

Dear Sir Damien; this works...PERFECTLY 🙂 - the json extractor is like fluid. Thanks!

0 Karma

strangelaw
Explorer

And by the way - if python is the only way; just show me example details w/example script. There's lots of those examples w/querying Splunk with Python - and I am not trying to do that; opposite - from outside server to Index.

0 Karma
Get Updates on the Splunk Community!

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...