Overview of Splunk Cloud administration
In Splunk Cloud, you use Splunk Web to perform administrative tasks. Unlike Splunk Enterprise, you do not have access to the command line or file system of your Splunk Cloud deployment, so you cannot use CLI commands or manually edit .conf files. In addition, some Splunk apps and Splunk add-on installation may need to be performed by Support. If there is a task that you need to perform, but cannot do so from the Splunk Web interface, you can file a ticket using the Support Portal.
Read more about settings in the Splunk Enterprise Admin Manual.
REST API access to Splunk Cloud
Many administrative tasks can be done using the Splunk REST API. Splunk Cloud supports the same REST endpoints as Splunk Enterprise. For details about REST endpoints, refer to the REST API Reference Manual. To use the REST API, you must have a paid subscription to Splunk Cloud.
You cannot use SAML authentication with the REST API.
To enable the Splunk REST API and SDKs, submit a support case on the Support Portal to request access. You can specify a range of IP addresses to control who can access the REST API.
- Managed Splunk Cloud deployments: Use the following URL:
Forward data from files and directories to Splunk Cloud
Splunk Cloud data policies
This documentation applies to the following versions of Splunk Cloud™: 6.6.3, 7.0.0, 7.0.2, 7.0.3, 7.0.5, 7.0.8, 7.0.11, 7.1.3, 7.1.6, 7.2.3, 7.2.4, 7.2.6, 7.2.7, 7.2.8, 7.2.9, 8.0.0