I am using Splunk Free Enterprise, and have had a ton of difficulty in getting data from AWS Cloudwatch into the Splunk Add-On for Amazon Web Services. In addition, the Splunk App for AWS simply doesn't work with the add-on. I can see events in the add-on for the AWS/EC2 namespace, and yet the app has 0 for everything. My inputs are going to the "main" index, not anything special. And I am only collecting from the "InstanceId" dimension for EC2 (as I saw a post earlier saying the others wouldn't work)
So, do they actually work in the free enterprise version? Is there something I need to set up to help the two parts communicate?
... View more