I inherited splunk enterprise installed on ec2 instances. We have cloud watch sending log data to our splunk - how do I get that data feed into an index. (not indexers)
so confused.
Indexers do indexing. The only way to get data into an index is by sending it to an indexer.
What problem are trying to solve?