SecKit AWS Assets Add-on for Splunk Enterprise Security
SecKit AWS Assets Add-on for Splunk Enterprise Security
Using events collected from AWS via the Splunk Addon for AWS build a reliable assets list for all of our AWS EC2 Instances.
This is an Add-on for Splunk Enterprise Security and requires the SecKit Common Assets Add On for Splunk Enterprise Security is installed and setup prior to the installation of this add-on see https://splunkbase.splunk.com/app/3055 and requires indexing of Amazon Cloud trail events using the Splunk Add-on for AWS