All Apps and Add-ons

Splunk REST API Splunk_TA_aws - Missing Inputs?

SplunkJ1
Loves-to-Learn Lots

I am attempting to list all of my inputs that I have configured in "Splunk_TA_aws"

 

I am able to list all of my inputs set up as Cloudtrail, S3,  and SQS.

I am unable to see my 20+ (all working) inputs for Cloudwatch logs. I have attempted to hit:

https://blahblah:8089/servicesNS/admin/Splunk_TA_aws/data/inputs/aws_cloudwatch_logs/

and

https://blahblah:8089/servicesNS/admin/Splunk_TA_aws/data/inputs/aws_cloudwatch/

0 results show up. As mentioned hitting the other endpoints for Cloudtrail, s3, and SQS are showing correctly.

Is there another path/location to gather my inputs set up as Cloudwatch logs?

Labels (3)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Lantern | Spotlight on Security: Adoption Motions, War Stories, and More

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...

Tech Talk | One Log to Rule Them All

One log to rule them all: how you can centralize your troubleshooting with Splunk logs We know how important ...