Hi,
I'm trying to get the Guard duty log using the Splunk Add-on for AWS app.
The input method is Generic S3, and logs from cloudtrail or WAF come in well, but the Guard duty log is not coming in.
Of course, the data is in the S3 bucket.
I'm attaching the guard duty.log.
Thank you.