Hello, I'm trying to configurethe CloudTrail and CloudWatch data inputs to collect AWS logs forSplunk. When I select a region that I think is correct, there is no log data coming into Splunk. W...
I'm trying to configure a cloudwatch logs input but I continue to receive invalid key errors when restarting Splunkonthe HF. I've gone by the doc as well as opened a support case but haven't had s...
Hi - I am trying to get theSplunk App forAWS Security Dashboards working. Apparently the default index the app is using is "main". I need to change this. I know I could c...
Hi, I'm trying to configure "custom Data Type" > SQS input in Splunkadd-onforAWS app to onboard data from an AWS account. is it possible to create the SQS input using IAM role instead of a...
I am trying to set up SplunkAdd-onforAWS to pull my logs from my AWS account into splunk. I have a Splunk Enterprise setup on prem in an AWS EC2 server. I used theSplunk Enterprise AMI. I have a...
What's the best practice to get AWS data, such as VPC Flow, CloudWatch, CloudTrail, into theSplunk platform at scale? The modular inputs in theSplunkAdd-onfor Amazon Web Services are not s...
...rchitecture.
Configure secure and fully automated extraction of data logs for import and analysis with your SIEM platform
S3-compatible API. The log extraction service uses Amazon Simple Storage S...