REST endpoint

noun

Splunk's REST API is made up of endpoints. Use the endpoints to access configurations within Splunk. Use the REST API methods to POST new values to these configurations or GET existing values. Currently, Splunk has several overarching endpoints:

Within these endpoints are more endpoints that offer access to certain types of configurations, and more granular access to specific configurations and knowledge objects by name.

Currently, only the authentication and search endpoints have been tested and certified, although other endpoints will be tested and certified throughout this year.

For more information

In the REST API Reference:

configuration

configuration file

event processing

character set encoding

segmentation

segment

timestamping

timestamp, timezone offset

default field extraction

host, source, source type, punct


archiving

retention time