Hello,
I'm trying to configure the CloudTrail and CloudWatch data inputs to collect AWS logs for Splunk. When I select a region that I think is correct, there is no log data coming into Splunk.
When I go into the inputs.conf file manually and input the region that was assigned to my programs account, still, no log data.
I even went in configured an index for the AWS add-on, went into the meta-data and changed the saved searches/macros to point to the new index I created, etc.
Has anyone experienced this issue before?