Splunk Search

External data fetch w/curl (REST)

strangelaw
Explorer

I need to fetch some external data from various sources. WIth curl on command line this is relatively simple to do against server REST APIs. How I can do this in most simplified way (e.g. curl -get http://url/api/stats) along with Splunk search (or saved search/type)?

I have tried to put script under /script and run it via web - does not bring any data to designated index.

SO - I am stuck in here. Very simple instructions please w/this one.

1 Solution

Damien_Dallimor
Ultra Champion

Damien_Dallimor
Ultra Champion

Use the Splunk REST API Modular Input

strangelaw
Explorer

Dear Sir Damien; this works...PERFECTLY 🙂 - the json extractor is like fluid. Thanks!

0 Karma

strangelaw
Explorer

And by the way - if python is the only way; just show me example details w/example script. There's lots of those examples w/querying Splunk with Python - and I am not trying to do that; opposite - from outside server to Index.

0 Karma
Get Updates on the Splunk Community!

Community Content Calendar, November Edition

Welcome to the November edition of our Community Spotlight! Each month, we dive into the Splunk Community to ...

October Community Champions: A Shoutout to Our Contributors!

As October comes to a close, we want to take a moment to celebrate the people who make the Splunk Community ...

Stay Connected: Your Guide to November Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...