I'm using current Cloud Splunk:
It appears the older "Splunk Add-on for AWS" can stream in Cloudwatch log-group data through Inputs > Custom Data Type > Cloudwatch Logs. This asks for a comma separated log-groups to feed of of and presumably setups up ingest for them.
Data Manager has a Cloudwatch Logs section, but it appears to only cover
Am I just missing something in Data Manager, does it support ingesting Cloudwatch log-groups?
Should I use "Splunk Add-On for AWS"?
Should forgo both and instead use the splunk log driver with the container tasks as per https://repost.aws/knowledge-center/ecs-task-fargate-splunk-log-driver (posted a year ago)
Thank you!