The REST API in Splunk is something that we can use in so many different ways. In this blog, I am going to go through some commands that I made to create a dashboard that could be useful for a team.
There are so many useful searches you can use within the REST API, from configurations, configurations, inputs, lookup, searches.
For my client, we wanted to be able to see permission users had, active users, top all users, and what authentication system was being used. The REST API was perfect for this!
So we wanted when the user logged on to...