All Apps and Add-ons

AWS Config Aggregators in Splunk Add-on for AWS

kimberlytrayson
Path Finder

Hello!

I'm using the full-feature AWS Organization. It allows to create an aggregator that contains Config data from all accounts and regions in the organization.
Is it possible to get this data into Splunk using Splunk Ann-on for AWS? I can't find a good option for it.
Of course, I can create a bucket with all the config data from all accounts, but it requires a lot of effort and seems unreasonable.
Maybe it is possible to create an input which utilize 

 get-aggregate-resource-config

 method? It looks much easier to query a single API endpoint than set up data collection from different sources to one place. BTW, it can be a good substitution to Describe with Assume Role inputs.

 

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...