Splunk Enterprise

Search for data in an aws s3 bucket doesn't show any data

Said75015
Explorer

Hi,

I have configured an input through aws splunk plugin to get data from a s3 bucket but when I search for it it don't show me anything.

I use the test license (I'm trying a POC with the solution)

Connection configuration is ok since I can list files in the bucket from splunk interface.

Thanks for your help

Saïd

Labels (1)
0 Karma
1 Solution

venkatasri
SplunkTrust
SplunkTrust

Hi @Said75015 

I guess you must have used AWS Add-on from splunkbase to configure the s3 inputs. You can find the issues underlying with this query accordingly you can troubleshoot.

index=_internal sourcetype=aws:s3:log ERROR

---

An upvote would be appreciated and Accept solution if this reply helps!

View solution in original post

Tags (1)

venkatasri
SplunkTrust
SplunkTrust

Hi @Said75015 

I guess you must have used AWS Add-on from splunkbase to configure the s3 inputs. You can find the issues underlying with this query accordingly you can troubleshoot.

index=_internal sourcetype=aws:s3:log ERROR

---

An upvote would be appreciated and Accept solution if this reply helps!

Tags (1)
Get Updates on the Splunk Community!

Admin Your Splunk Cloud, Your Way

Join us to maximize different techniques to best tune Splunk Cloud. In this Tech Enablement, you will get ...

Cloud Platform | Discontinuing support for TLS version 1.0 and 1.1

Overview Transport Layer Security (TLS) is a security communications protocol that lets two computers, ...

New Customer Testimonials

Enterprises of all sizes and across different industries are accelerating cloud adoption by migrating ...