Have a requirement like need to collect AWS LB logs into splunk enterprise to analyse access related stuff and some error via LB logs. So I wanted to know is there a way to collect logs from AWS LB, which is just URL. Please help me with this task.
I'm assuming when you are referring to the URL logs, you are referencing the AWS Elastic Load Balancer (ELB) Access Logs. If so, you can easily ingest the ELB Access Logs into Splunk Enterprise through the Splunk App for AWS via the S3 input. Here is the configuration guide for the S3 input for the Splunk Add-on for AWS and the Splunk App for AWS.