Splunk Search

External data fetch w/curl (REST)

Explorer

I need to fetch some external data from various sources. WIth curl on command line this is relatively simple to do against server REST APIs. How I can do this in most simplified way (e.g. curl -get http://url/api/stats) along with Splunk search (or saved search/type)?

I have tried to put script under /script and run it via web - does not bring any data to designated index.

SO - I am stuck in here. Very simple instructions please w/this one.

1 Solution

Ultra Champion

Ultra Champion

Explorer

Dear Sir Damien; this works...PERFECTLY 🙂 - the json extractor is like fluid. Thanks!

0 Karma

Explorer

And by the way - if python is the only way; just show me example details w/example script. There's lots of those examples w/querying Splunk with Python - and I am not trying to do that; opposite - from outside server to Index.

0 Karma