Configuring the Jira Server Add-On

To send Jira issues to Splunk, install the Splunk app and the JSD add-on. Then, use the setup wizard in Jira to configure your first connection between Jira and Splunk.


  • Server version of Jira.
  • Administrator access to Jira and Splunk.

Installing the Splunk App

  1. Log in to your Splunk server as an admin.
  2. Install the JIRA Service Desk Add-on for Splunk app and restart Splunk.
  3. Go to Settings > Data Inputs > HTTP Event Collector > Global Settings.
  4. Beside All Tokens, click Enabled.
    This setting enables the HTTP Event Collector (HEC) for your Splunk server.
  5. Go to Settings > Data Inputs, and click HTTP Event Collector.
  6. Click Add new, and complete the following fields.
    • Name — enter a descriptive name, such as JSD Event Collector.
    • Source type — select atlassian:jiraservicedesk:ticket:json.
    • Index — select the indexes where you want to send events. The recommended index is main.
    • Ensure the Enable indexer acknowledgement check box is not selected.
  7. Click Review, and then click Submit.
  8. Locate the event collector you created, and obtain the URL and security token for it.
    You will use this information to set up the connection to Splunk in JSD.
  9. Repeat steps 1 – 9 for every Splunk server you want to connect to JSD.

Installing the Jira Add-On

  1. Log in to your Jira instance as an admin.

  2. Click the gear icon, and then click Add-ons.

  3. Search the Marketplace for Forty8Fifty Real-Time Splunk for Jira.

  4. Follow the on-screen instructions to buy the add-on or start the free trial for 30 days.

Using the Setup Wizard

Use the setup wizard to connect a Splunk server, configure a registration between Jira projects and the Splunk server.

  1. In Jira, click the gear icon, and then click Applications.
  2. Under Integrations, click Real-Time Splunk for Jira.
  3. Click Setup Wizard.
  4. On the Add a Splunk page, enter the connection details for the Splunk server where you want to send issues. 


    User-friendly name for this Splunk server connection in Jira. For example:



    URL to the base Splunk server with the API port in the format:


    For example:


    Splunk security token to use in the authorization header. You can find this once you create

    your HTTP event collector in Splunk. For example:


  5. Click Add.
    You can also add Splunk Schemes to Jira later.

  6. On the Add a Project Scheme page, associate specific projects in Jira with the Splunk server and determine when to automatically send issues. 

    Add any combination of projects for which you want to send issues to a Splunk server.

    Splunks Add any combination of Splunk servers to receive issues from the selected projects.
    EventsSelect which events will trigger the add-on to automatically send Jira data to the Splunk servers. For example, if you want Jira to send data to the selected Splunk servers whenever an issue in one of the selected projects is updated, select the Issue Updated check box.

  7. Click Add.
    You can all add Project Schemes later.

Next Steps