I have configured VPC FLOW LOGS correctly in AWS cloudwatch. Within AWS cloudwatch I am able to see all the VPC Flow Logs. I checked the user/permissions/policy and Role and they all seem to be good.
However in Splunk AWS Application - I was able to configure it all - but the data is blank. There is no data. Not sure what am I missing. Also I have access only to the front end of splunk - so not sure where I can check internal splunk logs to see what's causing this.
Other services I am getting data - but not VPC Flow Logs
Can someone please help ?
↧