Getting Data In

How to read cloudtrail logs from an s3 bucket?

dc18
Explorer

I know there is Splunk Add-on for AWS, but I heard there is a simpler and easier way to read the buckets directly without using that Add-on.

Is that true?

 

Labels (1)
0 Karma

dc18
Explorer

thanks

0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@dc18 - If you are on Splunk Cloud try Data Managerhttps://docs.splunk.com/Documentation/DM/1.8.3/User/AWSAbout , see if it can help.

 

If not Splunk Add-on for AWS would be your best bet.

 

I hope this helps!!

0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...