Brad Poulton b2e871e731 Allow for multiple account usage 3 سال پیش
..
README.md a918e0f7d6 Adds moose_cloudwatch_logs 3 سال پیش
main.tf a918e0f7d6 Adds moose_cloudwatch_logs 3 سال پیش
vars.tf b2e871e731 Allow for multiple account usage 3 سال پیش

README.md

Moose Cloudwatch Logs

The purpose of this module is to contain all the bits to pull cloudwatch logs into Splunk via the HEC. The module is designed to pull an already existing cloudwatch log group. Before trying to collect a new cloudwatch log group, be sure to create the HEC token first. This module is dependent on ../../thirdparty/terraform-aws-kinesis-firehose-splunk.

This is the flow of the logs: Cloudwatch logs ( gzipped logs ) > Kinesis firehose > Lambda ( to be decompressed ) > Kinesis firehose > Splunk HEC.