I would like to get AWS RDS notifications (failovers, snapshots, etc.) into splunk. What is the best way to do this?
Hi,
aren't those notifications posted via CloudTrail? I would expect that the AWS Add-on should work for you. https://splunkbase.splunk.com/app/1876/
The issue is that CloudTrail only only shows user initiated actions. It doesn't contain information such as if there was a failover.