Splunk Search

External data fetch w/curl (REST)

strangelaw
Explorer

I need to fetch some external data from various sources. WIth curl on command line this is relatively simple to do against server REST APIs. How I can do this in most simplified way (e.g. curl -get http://url/api/stats) along with Splunk search (or saved search/type)?

I have tried to put script under /script and run it via web - does not bring any data to designated index.

SO - I am stuck in here. Very simple instructions please w/this one.

1 Solution

Damien_Dallimor
Ultra Champion

Damien_Dallimor
Ultra Champion

Use the Splunk REST API Modular Input

strangelaw
Explorer

Dear Sir Damien; this works...PERFECTLY 🙂 - the json extractor is like fluid. Thanks!

0 Karma

strangelaw
Explorer

And by the way - if python is the only way; just show me example details w/example script. There's lots of those examples w/querying Splunk with Python - and I am not trying to do that; opposite - from outside server to Index.

0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...