On July 15, 2022, the Splunk App for AWS will reach its end of life (EOL). After this date, Splunk will no longer maintain or develop this product. Splunk App for AWS is used for both IT monitoring and security use cases because it provides dashboards for both ITOps and security teams. The IT monitoring functionality in Splunk App for AWS is migrating to a content pack in Data Integrations called the Content Pack for Amazon Web Services Dashboards and Reports. The security use case functionality in Splunk App for AWS is migrating to the new Splunk App for AWS Security Dashboards. For more about migration options, see this community post.

Data models for the Splunk App for AWS
The Splunk App for AWS includes six data models to support dashboard performance.
Name | Purpose | Accelerated | Action required |
---|---|---|---|
CloudFront Access Log | Supports the Overview and CloudFront - Traffic Analysis dashboards. | No | Enable acceleration |
S3 Access Log | Supports the S3 - Traffic Analysis dashboard. | No | Enable acceleration |
Detailed Billing | Supports the Historical Detailed Bills dashboard. | No | Enable acceleration |
Detailed Billing CUR | Supports the Historical Detailed Bills, Historical Monthly Bills, and Budget Planner dashboards. | No | Enable acceleration |
Instance Hour | Supports the Capacity Planner dashboard. | No | Enable acceleration |
Instance Hour CUR | Supports the Capacity Planner, Reserved Instance Planner, Reserved Instance Planner Details, Historical Monthly Bills, and Reserved Instance Inventory dashboards. | No | Enable acceleration |
Last modified on 07 November, 2019
PREVIOUS Lookups for the Splunk App for AWS |
NEXT Macros for the Splunk App for AWS |
This documentation applies to the following versions of Splunk® App for AWS (Legacy): 6.0.0, 6.0.1, 6.0.2, 6.0.3
Feedback submitted, thanks!