Starting in version 6.4, Splunk has added a raw endpoint for HEC. Reference: http://dev.splunk.com/view/event-collector/SP-CAAAE8Y Having this available in the kafka-connect-splunk connector would enable users to easier consume and sink unstructured data