_SplunkAppInstall

  1. Log in to your Splunk server as an admin.
  2. Install the JIRA Service Desk Add-on for Splunk app and restart Splunk.
  3. Go to Settings > Data Inputs > HTTP Event Collector > Global Settings.
  4. Beside All Tokens, click Enabled.
    This setting enables the HTTP Event Collector (HEC) for your Splunk server.
  5. Go to Settings > Data Inputs, and click HTTP Event Collector.
  6. Click Add new, and complete the following fields.
    • Name — enter a descriptive name, such as JSD Event Collector.
    • Source type — select atlassian:jiraservicedesk:ticket:json.
    • Index — select the indexes where you want to send events. The recommended index is main.
    • Ensure the Enable indexer acknowledgement check box is not selected.
  7. Click Review, and then click Submit.
  8. Locate the event collector you created, and obtain the URL and security token for it.
    You will use this information to set up the connection to Splunk in JSD.
  9. Repeat steps 1 – 9 for every Splunk server you want to connect to JSD.