The Splunk integration is easy but the standard search it issues
(host=xxxxxxxx OR host=xx.xxx.xxx.xx OR host=xx.xxx.xxx.xxx)
Causes no results to be shown as our Splunk instance knows the server details under node=
also all it has a port number so wildcards are required at the end of the details passed above.
The Extra Query Parameters are only appended so it can not be altered from there. Is it possible to amend the base search passed to splunk??