I am currently performing a PoC and testing integrations using a single server instance of Splunk 8.0.0. The index is set to the default name of "index=cloudflare" and the logs are being pulled from an S3 bucket successfully. I've tried both "KV_MODE=json" and "KV_MODE=none"; however, the dashboards do not load. Are there any other apps needed or suggestions for troubleshooting?
Same issue and have a ticket with Cloudflare to fix the app they built. Seems its supported by a third party which has not updated it to support 8.x.