Hi everyone,
I’m currently collecting AWS CloudWatch logs from multiple accounts into a centralized logging account. However, new Log Groups are periodically created.
Is there a way to configure the Splunk Add-on for AWS so that it automatically collects logs from all existing and newly created CloudWatch Log Groups without having to manually add each one?
Any best practices or configuration tips would be greatly appreciated.
Thanks in advance!