Hi all,
We currently run Splunk within our own AWS environment (dedicated accounts) and separately have a variety of other AWS accounts running other production services.
We want to use the AWS Add-on to pull AWS audit data from the various accounts into our Splunk instance. Our admins do not want to create IAM Users within the target AWS accounts if possible (as hardcoded credentials etc), but rather, as we run Splunk in AWS anyway, use AWS instance profiles.
I can see this has been asked previously back in 2015/6 and it wasn't supported then, seems as we're 5 years on, I thought worth checking if that's still the case?
Thanks, Stu