Getting Data In

Is there an app or add-on to pull Cloudflare json logs using into Splunk Cloud using a curl command?

velocityehs
New Member

Hi,

Probably a basic question, but I have tested out manually importing json logs into Splunk using a curl command with success.

We have a Cloudflare instance where I would like to auto run a curl command against every day. Does Splunk have an app (I have the Cloud instance of Splunk) which I can install to pull this information?

I've already spoken to a Cloudflare technician who confirmed they cannot push these events, they have to be pulled using a curl command.

Thank you!

0 Karma

Yorokobi
SplunkTrust
SplunkTrust

There isn't an app specific to CloudFlare but considering their API is REST over HTTPS with JSON responses, you can leverage https://splunkbase.splunk.com/app/1546/ to have Splunk pull the data from CF's API.

See also https://api.cloudflare.com/

Because you're a Splunk Cloud customer, you'll probably have to open a support request to have the REST app installed.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...