All Apps and Add-ons

Unable to use Splunk local endpoint as cloudwatch destination

karthi25
Path Finder

I am working with streaming cloudwatch logs to splunk. Splunk is my local instance with SSL enabled. I am trying to make my splunk local endpoint as destination to firehose delivery stream as follows:

alt text

and in the command line am creating cloudwatch destination

aws logs put-destination --destination-name "awslogs-destination-splunk" --target-arn "arn:aws:firehose:us-east-1:arnno:deliverystream/firehose-splunk-delivery-stream" --role-arn "arn:aws:iam::arnno:role/cw-to-kinesis-role"

but it showing me the error as follows:

An error occurred (InvalidParameterException) when calling the PutDestination op
eration: Could not deliver test message to specified destination. Check if the d
estination is valid.

What am doing wrong here.Can anyone please suggest me the solution for it.

0 Karma

toddwpiper
Engager

Hi, did you ever figure this one out? I have the same issue.

0 Karma
Get Updates on the Splunk Community!

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...

Splunk Up Your Game: Why It's Time to Embrace Python 3.9+ and OpenSSL 3.0

Did you know that for Splunk Enterprise 9.4, Python 3.9 is the default interpreter? This shift is not just a ...