Sign In with your
Trend Micro Account
Need Help?
Need More Help?

Create a technical support case if you need further support.

Forwarding Deep Security events to Splunk using AWS Simple Notification Service (SNS), Lambda and S3

    • Updated:
    • 28 May 2020
    • Product/Version:
    • Deep Security 12.0
    • Deep Security 12.5
    • Platform:
Summary

There are instances when AWS SNS is used to publish Deep Security events. From SNS, the event can be forwarded to an AWS S3 bucket and then finally passed to Splunk.

Details
Public

Follow these steps:

  1. Follow the KB article on Publishing Deep Security events to Amazon S3 Bucket using SNS and Lambda.
  2. On your Splunk console, add the Splunk Add-on for AWS.

  3. Add your AWS Account.

  4. Create a new Input.

Premium
Internal
Partner
Rating:
Category:
Configure
Solution Id:
000253952
Feedback
Did this article help you?

Thank you for your feedback!

To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.

If you need additional help, you may try to contact the support team. Contact Support

To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.