AWS Application data not Coming in Splunk.
Iam using Splunk 6.2 version previously data is coming in splunk but from last two weeks it is not Coming.
Sahil,
Have you confirmed that the access credentials you have provided in the setuip page are still valid and have not been revoked?
I'm not quite clear from your comment above if you are running this on your indexer or a forwarder, but have you tried looking at the specific log files the AWS add-on writes in SPLUNKHOME/var/log/
Hi,
Access Credentials are valid and not been revoked. we are running this on indexer and I also check the log files SPLUNKHOME/var/log/splunk for AWS But we couldn't find anything substantial.
Last week I am facing the same issue But suddenly data is coming and from yesterday again Data is not Coming.
We couldn't identify the problem Why the data is not Coming If everything is configured correctly.
Can you please let me know How we can proceed and or what are the steps we need to follow.
Thanks,
Sahil
It is not Local File through forwarded data pulled in Splunk.
Can you please help where we can Check the AWS logs and Why the data is not Coming in SPlunk.
I didn't restart any Services that will effect the AWS data.
Thanks,
Sahil
How is the data being pulled into Splunk? Is it a local file or being forwarded?