Splunk Enterprise

Splunk Enterprise and cloudwatch log data- How do I get data into an index?

jcorcoran508
Path Finder

I inherited splunk enterprise installed on ec2 instances.     We have cloud watch sending log data to our splunk -   how do I get that data feed into an index. (not indexers)

so confused.

Labels (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Indexers do indexing.  The only way to get data into an index is by sending it to an indexer.

What problem are trying to solve?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...

Tech Talk | One Log to Rule Them All

One log to rule them all: how you can centralize your troubleshooting with Splunk logs We know how important ...

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through: An introduction to the Splunk Threat ...