Splunk® App for AWS

Installation and Configuration Manual

Acrobat logo Download manual as PDF


On July 15, 2022, the Splunk App for AWS will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Amazon Web Services Dashboards and Reports.
This documentation does not apply to the most recent version of AWS. Click here for the latest version.
Acrobat logo Download topic as PDF

About the Splunk App for AWS

The Splunk App for AWS gives you critical operational and security insight into your Amazon Web Services account.

The app includes:

  • A pre-built knowledge base of dashboards, reports, and alerts that deliver real-time visibility into your environment.
  • Easy-to-configure data inputs for your Config, CloudTrail, CloudWatch, VPC Flow Logs, Billing, and S3 data.
  • A logical topology dashboard that displays your entire AWS infrastructure to help you optimize resources and detect problems.
  • CIM-compliant fields and tags so that you can integrate your AWS data with your other infrastructure and security data sources.

If you are a Splunk software admin, get the app on Splunkbase and proceed through this manual for detailed installation and configuration instructions.

If you are a Splunk software user, check out the user guide to get familiar with the dashboards.

Access the release notes for a list of new features and known issues in the current release.

Last modified on 25 February, 2016
  NEXT
What data the Splunk App for AWS collects

This documentation applies to the following versions of Splunk® App for AWS: 4.0.0, 4.1.0


Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters