<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="25925" language="fr" source="https://portal.flane.ch/swisscom/fr/xml-course/splunk-dsrapi" lastchanged="2026-01-06T20:25:47+01:00" parent="https://portal.flane.ch/swisscom/fr/xml-courses"><title>Using the Splunk REST API</title><productcode>DSRAPI</productcode><vendorcode>SP</vendorcode><vendorname>Splunk</vendorname><fullproductcode>SP-DSRAPI</fullproductcode><version>10</version><essentials>&lt;p&gt;To be successful, students should have a solid understanding of the following:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/fr/course/splunk-sesa&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;Splunk Enterprise System Administration &lt;span class=&quot;fl-prod-pcode&quot;&gt;(SESA)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/fr/course/splunk-seda&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;Splunk Enterprise Data Administration &lt;span class=&quot;fl-prod-pcode&quot;&gt;(SEDA)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;Python, JavaScript, or similar scripting languages&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;ul&gt;
&lt;li&gt;Administrators&lt;/li&gt;&lt;li&gt;Engineers&lt;/li&gt;&lt;/ul&gt;</audience><outline>&lt;h4&gt;Topic 1 &amp;ndash; Splunk REST API&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Introduce REST&lt;/li&gt;&lt;li&gt;Review HTTP requests&lt;/li&gt;&lt;li&gt;Describe the Splunk REST API&lt;/li&gt;&lt;li&gt;Discuss authentication methods&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 2 &amp;ndash; Response Data&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Review HTTP responses&lt;/li&gt;&lt;li&gt;Describe the Atom specification&lt;/li&gt;&lt;li&gt;Demonstrate how to retrieve JSON&lt;/li&gt;&lt;li&gt;Explain how to parse a response&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 3 &amp;ndash; Administration APIs&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Introduce the administration APIs&lt;/li&gt;&lt;li&gt;Update configuration files&lt;/li&gt;&lt;li&gt;Work with indexes&lt;/li&gt;&lt;li&gt;Manage users&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 4 &amp;ndash; Namespaces and Access Control&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Introduce namespaces&lt;/li&gt;&lt;li&gt;Explain namespace use cases&lt;/li&gt;&lt;li&gt;Implement access control&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 5 &amp;ndash; Search&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Identify search components&lt;/li&gt;&lt;li&gt;Review search best practices&lt;/li&gt;&lt;li&gt;Create a search and retrieve results&lt;/li&gt;&lt;li&gt;Discuss oneshot searches&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 6 &amp;ndash; Advanced Search&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Utilize real-time searches&lt;/li&gt;&lt;li&gt;Summarize export searches&lt;/li&gt;&lt;li&gt;Construct saved searches&lt;/li&gt;&lt;li&gt;Understand search job management&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 7 &amp;ndash; HTTP Event Collector&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Describe the HTTP Event Collector&lt;/li&gt;&lt;li&gt;Explain token management&lt;/li&gt;&lt;li&gt;Explore data ingestion&lt;/li&gt;&lt;li&gt;Implement data acknowledgement&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Topic 8 &amp;ndash; Key-Value Store&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Examine the Key-Value Store&lt;/li&gt;&lt;li&gt;Define and manage a collection&lt;/li&gt;&lt;li&gt;Create and manage records&lt;/li&gt;&lt;/ul&gt;</outline><essentials_plain>To be successful, students should have a solid understanding of the following:



- Splunk Enterprise System Administration (SESA)
- Splunk Enterprise Data Administration (SEDA)
- Python, JavaScript, or similar scripting languages</essentials_plain><audience_plain>- Administrators
- Engineers</audience_plain><outline_plain>Topic 1 – Splunk REST API


- Introduce REST
- Review HTTP requests
- Describe the Splunk REST API
- Discuss authentication methods
Topic 2 – Response Data


- Review HTTP responses
- Describe the Atom specification
- Demonstrate how to retrieve JSON
- Explain how to parse a response
Topic 3 – Administration APIs


- Introduce the administration APIs
- Update configuration files
- Work with indexes
- Manage users
Topic 4 – Namespaces and Access Control


- Introduce namespaces
- Explain namespace use cases
- Implement access control
Topic 5 – Search


- Identify search components
- Review search best practices
- Create a search and retrieve results
- Discuss oneshot searches
Topic 6 – Advanced Search


- Utilize real-time searches
- Summarize export searches
- Construct saved searches
- Understand search job management
Topic 7 – HTTP Event Collector


- Describe the HTTP Event Collector
- Explain token management
- Explore data ingestion
- Implement data acknowledgement
Topic 8 – Key-Value Store


- Examine the Key-Value Store
- Define and manage a collection
- Create and manage records</outline_plain><duration unit="d" days="0">9 heures</duration><pricelist><price country="US" currency="USD">1000.00</price><price country="GB" currency="GBP">835.00</price><price country="PL" currency="USD">1000.00</price><price country="DE" currency="EUR">1000.00</price><price country="CA" currency="CAD">1380.00</price><price country="CH" currency="CHF">1100.00</price><price country="NL" currency="EUR">1000.00</price></pricelist><miles><milesvalue country="CA" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="US" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="GB" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="SI" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="PL" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="DE" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="AT" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="CH" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue><milesvalue country="NL" vendorcurrency="SPC" vendorcurrencyname="Splunk Training Units">100.00</milesvalue></miles></course>