I am trying to import a specific account data from AWS S3
we have configured SQS to import the full data from the same S3 and it works properly
I have defined the inputs as below
the account path in AWS is Amazon S3/amdocsinfosectrail/AWSLogs/o-kgohve3tjc/001519100451
what I am missing ?
the logs are not created with the key_name
once I remove the filter I see that the /opt/splunk/var/lib/splunk/modinputs/aws_s3/amdocsinfosectrail_001519100451.index.v3.ckpt is getting the list of files
[aws_s3://amdocsinfosectrail_001519100451]aws_account = IS accountbucket_name = amdocsinfosectrailcharacter_set = autoct_blacklist = ^$host_name = s3.amazonaws.comindex = testinitial_scan_datetime = -180dinterval = 30is_secure = Truemax_items = 100000max_retries = 3recursion_depth = -1sourcetype = aws:s3disabled = 0key_name = AWSLogs/o-kgohve3tjc/001519100451/*
Did you every get a solution to this?