All Apps and Add-ons

what is different between add on for AWS and Amazon Kinesis Firehose

lksridhar
Explorer

Hi Folks,

I am planing to ingest VPC logs into splunk through AWS add-on and also i got the other add-on ( Amazon Kinesis Firehose) which it is offering same as AWS add-on.

Could you please let me know anyone which is the best add-on to ingest VPC logs into splunk. also provide the difference between these two apps.

Tags (1)
0 Karma

ssadanala1
Contributor

Hi ,
AWS add-on consists of all the inputs configuration of all aws logs which includes kinesis as one among them .

AWS kinesis add-on consists of inputs configuration for aws kinesis logs only .

I believe Amazon kinesis Firehose add-on is the best way to get the vpc logs because its easy to configure and uses HEC for sending the data .

Kinesis is the recommended input type for collecting VPC Flow Logs (source type: aws:cloudwatchlogs:vpcflow). This input type also supports the collection of custom data types through Kinesis streams.

Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...