<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/563055#M9695</link>
    <description>&lt;P&gt;I am getting this error only when I try to configure input for any AWS resource using Generic S3 option&lt;/P&gt;</description>
    <pubDate>Thu, 12 Aug 2021 11:14:29 GMT</pubDate>
    <dc:creator>subramanianers</dc:creator>
    <dc:date>2021-08-12T11:14:29Z</dc:date>
    <item>
      <title>Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562961#M9684</link>
      <description>&lt;P&gt;I am trying to set up Splunk Add-on for AWS to pull my logs from my AWS account into splunk. I have a Splunk Enterprise setup on prem in an AWS EC2 server. I used the Splunk Enterprise AMI. I have attached an EC2 instance role that has administrator access. When I try to configure an input, I get the error -&amp;nbsp;&lt;SPAN&gt;Unexpected error "&amp;lt;class 'splunktaucclib.rest_handler.error.RestError'&amp;gt;" from python handler: "REST Error [400]: Bad Request -- An error occurred (InvalidClientTokenId) when calling the GetCallerIdentity operation: The security token included in the request is invalid. Please make sure the AWS Account and Assume Role are correct.". See splunkd.log/python.log for more details.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Note: I did not add any account or IAM role manually in the Splunk UI. The IAM role was autodiscovered by Splunk, and is visible in the Account tab in the Configurations page.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Aug 2021 16:44:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562961#M9684</guid>
      <dc:creator>subramanianers</dc:creator>
      <dc:date>2021-08-11T16:44:17Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562962#M9685</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/237362"&gt;@subramanianers&lt;/a&gt;&amp;nbsp;I guess it's something to do with the IAM role attached to your EC2 instance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;you can try removing it and attach new IAM role and see if that works ?&lt;/P&gt;</description>
      <pubDate>Wed, 11 Aug 2021 17:12:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562962#M9685</guid>
      <dc:creator>sanjeev543</dc:creator>
      <dc:date>2021-08-11T17:12:55Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562963#M9686</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/82711"&gt;@sanjeev543&lt;/a&gt;&amp;nbsp;I have tried it several times. It did not work.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Aug 2021 17:20:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/562963#M9686</guid>
      <dc:creator>subramanianers</dc:creator>
      <dc:date>2021-08-11T17:20:56Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/563021#M9691</link>
      <description>&lt;P&gt;I have also created a user with admin privileges, and configured its access id and secret key in Accounts tab in Configuration page. Even while using that account to configure an input, I am getting the same error.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Aug 2021 05:14:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/563021#M9691</guid>
      <dc:creator>subramanianers</dc:creator>
      <dc:date>2021-08-12T05:14:24Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to configure input on Splunk Enterprise with Splunk-Add-on for AWS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/563055#M9695</link>
      <description>&lt;P&gt;I am getting this error only when I try to configure input for any AWS resource using Generic S3 option&lt;/P&gt;</description>
      <pubDate>Thu, 12 Aug 2021 11:14:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Unable-to-configure-input-on-Splunk-Enterprise-with-Splunk-Add/m-p/563055#M9695</guid>
      <dc:creator>subramanianers</dc:creator>
      <dc:date>2021-08-12T11:14:29Z</dc:date>
    </item>
  </channel>
</rss>

