Back to Browse

GDI: AWS CloudTrail using Splunk Data Manager (S3) - Part 2

328 views
Aug 25, 2025
3:52

This Part 2 guides you through the process of ingesting data into Splunk using Data Manager and AWS CloudFormation. You'll learn how to supply Data Manager with essential values like the SQS Queue URL and S3 bucket ARN to generate a CloudFormation template. The tutorial then demonstrates how to deploy this template in AWS CloudFormation to set up your stack, enabling seamless data ingestion. Finally, it shows how to verify that your CloudTrail logs are successfully flowing into Splunk, ready for searching and analysis! *-*-* Ready to level up your Splunk skills? *-*-* Explore hands-on training, certification paths, and expert resources to keep learning at your own pace. 🌐 Start here: https://education.splunk.com 🎓 Get certified: https://www.splunk.com/en_us/training/certification-track.html 📅 Live & virtual classes: https://www.splunk.com/en_us/training.html 💬 Ask questions in the community: https://community.splunk.com 📺 Watch more how-to videos: https://www.youtube.com/@SplunkHowTo

Download

1 formats

Video Formats

360pmp48.8 MB

Right-click 'Download' and select 'Save Link As' if the file opens in a new tab.

GDI: AWS CloudTrail using Splunk Data Manager (S3) - Part 2 | NatokHD