Add the Splunk Connector
Authenticate to Splunk
After you add the connector, you need to set the required properties. URL: Enter the URL for your endpoint (for example, https://YourSiteName.splunk.com:8089). supports authenticating to in several ways. Select your authentication method below to proceed to the relevant section that contains the authentication details.- Basic (default)
- Access Token
- HTTP Event Collector Token
Basic
Access Token
To connect with an access token, specify the following properties:- Auth Scheme: Select AccessToken.
- Access Token: Specify your access token. To obtain a token, navigate to Users and Authentication > Tokens to access your assigned authentication token. If you do not have a token, request one from the administrator of the instance that you want to access.
HTTP Event Collector Token
To connect with an HTTP Event Collector token, specify the following properties:- Auth Scheme: Select HTTPEventCollectorToken.
-
HTTP Event Collector Token: Enter the HTTP Event Collector (HEC) token that is used to access the HTTP Event Controller feature in your account.
If you do not know the HEC token, you need to generate one, as follows:
- Log into your account and navigate to Settings > Data Inputs.
- Under Local Inputs, click HTTP Event Collector.
- Click the New Token button (upper right).
- Configure token settings by filling in required fields such as name, source, and index.
- Enable the token by sliding the toggle switch to Enabled.
- Click Save to generate the token.
- Copy the token value shown on the confirmation screen and paste it in the HTTP Event Collector Token text box in .
Complete Your Connection
To complete your connection:- Define advanced connection settings on the Advanced tab. (In most cases, though, you should not need these settings.)
- Click Create & Test to create your connection.