All Apps and Add-ons

Splunk App and Add-on for AWS: How to collect logs from AWS?

pfabrizi
Path Finder

I am new to Splunk, we are currently using ESM from McAfee but I need to collect logs from AWS. Can someone tell me what needs to be done to do this?

Do I need to install an agent on AWS?
What does the Splunk App for AWS give me and how do I install? I current have a splunk-app-for-aws_500.tgz file.

Thanks!

0 Karma

starcher
Influencer

The documentation for the Splunk Add-on for AWS can be found at https://docs.splunk.com/Documentation/AddOns/released/AWS/Description

The Splunk app is the gui portion. The add-on pulls data.

ChrisG
Splunk Employee
Splunk Employee

...and if you are new to Splunk, read the general information about add-ons to understand what they are, how they work, and how to install them.

pfabrizi
Path Finder

Thank You, We are using enterprise splunk, so I needed to install AWS app on the deployment server and then the add on to the search head. I am able to configure the AWS but looks like there is a permissions issue with the account that was created for me.

0 Karma
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...