All Apps and Add-ons

Splunk REST API Splunk_TA_aws - Missing Inputs?

SplunkJ1
Loves-to-Learn Lots

I am attempting to list all of my inputs that I have configured in "Splunk_TA_aws"

 

I am able to list all of my inputs set up as Cloudtrail, S3,  and SQS.

I am unable to see my 20+ (all working) inputs for Cloudwatch logs. I have attempted to hit:

https://blahblah:8089/servicesNS/admin/Splunk_TA_aws/data/inputs/aws_cloudwatch_logs/

and

https://blahblah:8089/servicesNS/admin/Splunk_TA_aws/data/inputs/aws_cloudwatch/

0 results show up. As mentioned hitting the other endpoints for Cloudtrail, s3, and SQS are showing correctly.

Is there another path/location to gather my inputs set up as Cloudwatch logs?

Labels (2)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...