Splunk Enterprise

Splunk Enterprise and cloudwatch log data- How do I get data into an index?

jcorcoran508
Path Finder

I inherited splunk enterprise installed on ec2 instances.     We have cloud watch sending log data to our splunk -   how do I get that data feed into an index. (not indexers)

so confused.

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Indexers do indexing.  The only way to get data into an index is by sending it to an indexer.

What problem are trying to solve?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...