Logo Questions Linux Laravel Mysql Ubuntu Git Menu
 

Monitoring Amazon S3 logs with Splunk?

We have a large extended network of users that we track using badges. The total traffic is in the neighborhood of 60 Million impressions a month. We are currently considering switching from a fairly slow, database-based logging solution (custom-built on PHP—messy...) to a simple log-based alternative that relies on Amazon S3 logs and Splunk.

After using Splunk for some other analyisis tasks, I really like it. But it's not clear how to set up a source like S3 with the system. It seems that remote sources require the Universal Forwarder installed, which is not an option there.

Any ideas on this?

like image 297
Wandering Digital Avatar asked Nov 14 '22 06:11

Wandering Digital


1 Answers

Very late answer but I was looking for the same thing and found a Splunk app that does what you want, http://apps.splunk.com/app/1137/. I have yet not tried it though.

like image 170
cjg Avatar answered Dec 31 '22 01:12

cjg