Splunk HTTP Event Collector (HEC) API
The Splunk HTTP Event Collector (HEC) is a high-performance REST API data input that accepts JSON or raw text data sent over HTTP or HTTPS. It uses token-based authentication and provides endpoints for sending events (/services/collector/event), raw data (/services/collector/raw), and checking indexing status (/services/collector/ack).
Documentation
Documentation
https://docs.splunk.com/Documentation/Splunk/latest/Data/UsetheHTTPEventCollector
APIReference
https://docs.splunk.com/Documentation/SplunkCloud/latest/Data/HECRESTendpoints
Documentation
Event Format
Documentation
HEC Examples
GettingStarted
https://dev.splunk.com/view/event-collector/SP-CAAAE6M