Splunk Search

Unable to search using REST API

vinitchaudhari1
New Member

Hi I have a cloud instance version 7.0.2.1 https://prd-p-df4vmzb62ds7.cloud.splunk.com. I am trying to use REST API to run search but I am always getting Page Not Found error. I gave correct username/password. I tried running simple POST call using endpoint utr https://prd-p-df4vmzb62ds7.cloud.splunk.com/services/auth/login but it is not working. If anyone has used REST API then can you please help? I also have local version 5.x but it is not enterprise. Is REST API supported only in enterprise version?

Tags (1)
0 Karma

seegeekrun
Path Finder
0 Karma

seegeekrun
Path Finder

Are you using port 8089?
https://your-instance.com:8089/services/admin...

The UI runs on port 8000 and is typically forwarded from 443. But the API Endpoints are over 8089, which is also the management port.

0 Karma

vinitchaudhari1
New Member

Thanks Seegeekrun for the response. I am using 8089. I just found out that it works with curl but not with Postman or SOAP UI. Is there a way to use Postman or SOAP UI for Splunk REST API?

0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...