1. AWS Log Ingestion into Splunk

    This post will go over the many ways to ingest data from AWS to Splunk Cloud. This includes ingesting data from AWS Services, from workloads running in AWS, and data stored inside of AWS Services or generated by AWS Services. This post will cover all the available options, reccomendations based on your requirements. This post does assume a certain basic understanding of AWS Services, and for implementation this requires assistance from an AWS Admin that has proper permissions to deploy the solution. …


  2. Using Splunk as your Centralized platform for ingesting Logging, Monitoring, and Metrics data from your AWS environment that is managed by AWS Organizations w(o) AWS Control Tower

    This post will go over the considerations, archicture designs, and things to be aware of as you centralize Splunk as your platform for your AWS Environments, with the focus on AWS accounts managed by (AWS Organizations)what-is-aws-org and deployed by AWS Control Tower. …


  3. Filter Windows Event Logs using Splunk Ingest Actions

    This post is a follow-up, more advance post to filter Window Event Logs in Splunk. …


  4. Windows Event Logs Filter Splunk

    This post will cover Windows Event Log Filtering, Splunk, best practice filters for Windows Event Logs, and implementation steps. …


  5. Kinesis Firehose Re-Ingestion Pipeline for Splunk

    At present, there are two methods available for ingesting data from AWS into Splunk. The first method is the ‘push method’ based on SQS-S3, and the second method is the ‘pull method’ based on Amazon Kinesis Data Firehose (KDF). For the purpose of this guide, we will assume that you are using the pull method. …


  6. about me

    i am a cloud architect, cloud engineer, ml enthusiast, sales engineer, and most of all curious. …