Hi,
I just installed the Splunk Security Analytics for AWS Content app.
almost immeditaly I received a lot of error message show conflicts :
INFO pid=302591 tid=MainThread file=confcheck_es_correlationmigration.py:run:115 | Processing duplicate: ESCU - AWS Investigate User Activities By AccessKeyId - Response TaskINFO pid=302591 tid=MainThread file=confcheck_es_correlationmigration.py:run:140 | Unrelocatable duplicate stanza found: stanza="ESCU - AWS Investigate User Activities By AccessKeyId - Response Task" conf_type="savedsearches" apps="DA-ESS_AmazonWebServices_Content,DA-ESS-ContentUpdate"
Is all content in DA-ESS_AmazonWebServices_Content already in DA-ESS-ContentUpdate ?