My favorites | Sign in
Project Logo
                
Code license: New BSD License
Labels: splunk, search, logfiles, REST, API, indexing
Show all Featured wiki pages:
SplunkAuth SplunkEndpoints

Welcome to Splunk Labs

Splunk Labs is a resource for developers wanting to extend the core functionality of Splunk's Platform, or build applications requiring Splunk's ability to store massive amounts of unstructured IT data.

More information about developing on the platform is available on the developer's page and Splunk's developer blogs. Support should be handled through the discussions list over on the Splunk Lab's Google Group.

Getting Started

You'll need to download the latest version of Splunk from the website. An account is required to download newer versions of Splunk. If you are using an older version of Splunk, it is recommended you upgrade to get the latest version with the newer REST endpoints.

You can refer to the installation instructions from Splunk's documentation pages. These instructions are made for the released version of Splunk, and may not work for installing Preview versions.

You'll also need a good handle on the Splunk search language:

Programming Your First Application

Once you get Splunk installed, you can start accessing the APIs through the REST endpoints located on the Splunk server, splunkd. We use Python in the examples below, but you can use any RESTful language to talk to Splunk's server.

Programming Resources

Splunk's APIs use REST, which requires the programmer to handle connecting to the web and parsing XML bits coming back from the server. The following SDKs provide a more manageable interface for dealing with Splunk, and can help lower the amount of development time.

Languages we'd like to have soon:

Tools and add-ons

Contributing

This is a community based development wiki for application projects based on Splunk's platform and REST APIs. If you want to contribute code, links or content to these pages, you need to be added to the project's member list.

You can request to join the Splunk Labs project here on Google Code by emailing your Gmail email address in the SUBJECT line of your email to splunk-labs@splunk.com.

If you have some code that you want to contribute, and want to host it on Google Code, you can create a new project and then have us link to it from here. To be consistent, name your project something like splunk-myproject.

Splunk Related Projects

More Project Ideas

Splunk's core technology is a highly-scalable IT event database engine, capable of handling insane amounts of unstructured data in an enterprise environment. The Splunk Hacks page lists over 50 possible ideas for projects using Splunk. Some of them are simply brilliant, others are completely ridiculous (but still would be cool to see implemented).

If you are looking for a good excuse to write some code against Splunk, now's your chance. Grab a project idea, create a project for it and get busy!









Hosted by Google Code