I configured the AWS S3 input data source in Splunk Cloud. After specifying the bucket, it presented a choice of paths which are only 2 levels down from the root. Our logs are stored in a location which is 3 levels down, and at 2 levels down we have our data files and logs. So specifying the 2 level folder will ingest all our data and logs which is obviously not desirable.
Is there a way to either specify the exact path from which the logs should be read, or making the configuration UI look 3 levels down?
Thanks.
Denis
... View more