<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D5WR00001ha0bX0AQOkta Classic EngineIntegrationsAnswered2026-05-28T16:17:49.000Z2026-05-28T15:14:39.000Z2026-05-28T16:17:49.000Z

VojtechT.50869 (Customer) asked a question.

Splunk Log streaming destination hardcoded to .splunkcloud.com

When creating a Splunk Log streaming destination for Okta eventlog in an admin portal the "Host" field only supports domains ending with splunkcloud.com severely limiting the usability of this integration.

There is now a few of other vendors supporting the Splunk HEC protocol so enabling any domain would be incredibly helpful for integration with data pipeline tools like Datadog,Cribl. Not to mention the Splunk enterprise.

Does anybody know why this filter is in place and if it can be removed?


  • Mihai N. (Okta, Inc.)

    Hi @VojtechT.50869 (Customer)​ , Thank you for reaching out to the Okta Community! 

     

    It cannot be removed. The limitation is in place due to the fact that the Log streaming feature was designed explicitly for Amazon EventBridge or Splunk Cloud implementations.  

    If you would like to see more or custom integration types added to the feature in the future, you can suggest a feature enhancement on the Okta Community page by going to the Community Ideas tab. Features suggested in our community are reviewed and can be voted and commented on by other members. High popularity will increase the likelihood of it being picked up by the Product Team and it being implemented. 

    More details here.  

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

     

    --

    Help others in the community by liking or hitting Select as Best if this response helped you.

    Collect them all. Learn a new skill and earn a new Okta Learning badge.

    Just released: More Okta Community badges just added

    Expand Post

Loading
Splunk Log streaming destination hardcoded to .splunkcloud.com