How can we filter logstreams while adding a Splunk Subscription on aws batch logs using Cloud Formation Template?

0

Hello, I am trying to filter some specific log streams (prefix*) while adding a Splunk Subscription in my stack CFT. But, I don't see any options of filtering any logstream. The loggroup is /aws/batch/job and I don't want to replicate all batch logs in splunk.

Can someone please help me here?

posta 3 mesi fa149 visualizzazioni
2 Risposte
0

Check out the following docs:

profile picture
ESPERTO
con risposta 3 mesi fa
profile picture
ESPERTO
verificato un mese fa
0

Hello. I tried to identify if you could do this filter in the Lambda offered as a blueprint, but I couldn't find how. Do you think you could segregate into different Log Groups? This way I would subscribe only to the log group containing logs that go to Splunk. And if you wanted to query using CW Log Insights, you could select both Log Groups.

profile picture
con risposta 3 mesi fa

Accesso non effettuato. Accedi per postare una risposta.

Una buona risposta soddisfa chiaramente la domanda, fornisce un feedback costruttivo e incoraggia la crescita professionale del richiedente.

Linee guida per rispondere alle domande