I understand I need to open port outbound port 9997, however, what is the IP range for Splunk Light Cloud as we require IPs for our firewall? I understand it uses AWS.
You should have a FQDN that was provided to you. Just run nslookup on that.
However, i believe the IP will change over time and so it's best to use a tool like centralops.net 's domain dossier to get the full network block, etc.
So for example when I did a network whois on my elastic IP i got the following:
NetRange: 220.127.116.11 - 18.104.22.168
Parent: NET52 (NET-52-0-0-0-0)
NetType: Direct Allocation
Organization: Amazon Technologies Inc. (AT-88-Z)
The net block you're in will probably depend on where your instance was built, and will not necessarily be the same as mine.
View solution in original post
Thanks, I had to add all the US West AWS IP Range.