Connect
Opens a connection to Splunk and returns a Client ID.
This node is also exposed as an AI Agent tool.
This node has 1 input port and 1 output port.
Common Properties
Every node shares these.
- Name — the node's display name on the canvas.
- Color — the node's colour on the canvas.
- Delay Before (sec) — wait this long before the node runs.
- Delay After (sec) — wait this long after the node runs.
- Continue On Error — carry on instead of failing the flow. Defaults to false.
info
When Continue On Error is true the error is not raised at all, so a Catch node will not see it either.
Inputs
| Property | Field | Description |
|---|---|---|
| Base URL | inBaseURL | Splunk management API URL (e.g. https://localhost:8089) |
| Skip TLS Verification | inSkipTLS | Skip TLS certificate verification (useful for self-signed certs) |
Outputs
| Property | Field | Description |
|---|---|---|
| Client ID | outClientID | Unique identifier for this Splunk connection |
Options
| Property | Field | Description |
|---|---|---|
| Credentials | optCredentials | Splunk authentication token |
Requirements
- Splunk Auth Token — Splunk authentication token for REST API access
value— Auth Token (password, required). Splunk authentication token from Settings > Tokens
Store these in a Vault and reference the vault item from the node, rather than typing the secret into the property.
Related nodes
Disconnect · Run Search · Get Search Results · Send Event · List Indexes · List Saved Searches · Run Saved Search · Get Server Info · Toolkit
See also
- Splunk — every node in this package
- Message object — how properties read values from
msg - Handling failure — Continue On Error, Catch and retries