Splunk® Enterprise

Developing Views and Apps for Splunk Web

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Extend Splunk Enterprise

There are several ways you can extend Splunk Enterprise using the Splunk SDKs, the Splunk Enterprise REST API, and custom search commands.

Splunk SDKs

The Splunk SDKs let you write applications in numerous programming languages that access the Splunk Enterprise REST API. The Splunk Developer Portal provides details about the available SDKs plus documentation on how to build applications using the SDKs. The following SDKs are available:

Splunk Enterprise REST API

You can use the Splunk Enterprise REST API to run searches or manage Splunk Enterprise configurations and objects without accessing Splunk Enterprise through Splunk Web.

Custom search commands

Splunk Enterprise ships with a wide variety of search commands. However, you may want to build your own custom search command to parse and present data in a new way. Custom search commands requires a moderate understanding of Python.

Note: Search commands are not recursive -- they only act on the data they receive back from the search.
PREVIOUS
Modular inputs examples
  NEXT
Splunk SDKs

This documentation applies to the following versions of Splunk® Enterprise: 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.0.12, 6.0.13, 6.0.14, 6.0.15, 6.1, 6.1.1, 6.1.2, 6.1.3, 6.1.4, 6.1.5, 6.1.6, 6.1.7, 6.1.8, 6.1.9, 6.1.10, 6.1.11, 6.1.12, 6.1.13, 6.1.14


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters