Splunk® App for AWS Security Dashboards

Installation and Configuration Manual

This documentation does not apply to the most recent version of Splunk® App for AWS Security Dashboards. For documentation on the most recent version, go to the latest release.

Migrate from Splunk App for AWS to Splunk App for AWS Security Dashboards

Install the Splunk App for AWS Security Dashboards according to your type of deployment:

Following installation, the product components in your deployment are as noted in the following table:

Product Data Collection Node (forwarder) Indexer Search head
Splunk Add-on for AWS
Splunk App for AWS    
Splunk App for AWS Security Dashboards    
  1. After the app is installed, you can configure it.
    1. Create indexes and schedule saved searches. See Create indexes and schedule saved searches for the Splunk App for AWS Security Dashboards.
    2. Use a custom index for storing AWS accounts and inputs data. See Create an optional custom index.
  2. The app is now configured and you can go through the dashboards of Splunk App for AWS Security Dashboards.
  3. Remove the Splunk App for AWS from your environment once you are ready to use the Splunk App for AWS Security Dashboards.

On July 15, 2022, the Splunk App for AWS will reach its end of life (EOL), which means Splunk will no longer maintain or develop this product. Remove the Splunk App for AWS from your environment before the EOL, once you are comfortable with Splunk App for AWS Security Dashboards.

Last modified on 29 November, 2022
Create an optional custom index   Troubleshoot the Splunk App for AWS Security Dashboards

This documentation applies to the following versions of Splunk® App for AWS Security Dashboards: 1.1.0


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters