All Apps and Add-ons

AWS Config Aggregators in Splunk Add-on for AWS

kimberlytrayson
Path Finder

Hello!

I'm using the full-feature AWS Organization. It allows to create an aggregator that contains Config data from all accounts and regions in the organization.
Is it possible to get this data into Splunk using Splunk Ann-on for AWS? I can't find a good option for it.
Of course, I can create a bucket with all the config data from all accounts, but it requires a lot of effort and seems unreasonable.
Maybe it is possible to create an input which utilize 

 get-aggregate-resource-config

 method? It looks much easier to query a single API endpoint than set up data collection from different sources to one place. BTW, it can be a good substitution to Describe with Assume Role inputs.

 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...