Is it possible in the Splunk Add-on for AWS to monitor multiple different directories in an S3 bucket and assign them different source types?
s3bucket/something > sourcetype 1
s3bucket/somethingelse > sourcetype 2
I would think this is possible through the inputs while specifying the Bucket Name s3bucket/something and using the more settings and specifying the source type there. Can anyone confirm this actually works?