Splunk® Add-on for Amazon Kinesis Firehose allows a Splunk software administrator to collect AWS CloudTrail, VPC Flow Logs, CloudWatch events, and raw or JSON data from Amazon Kinesis Firehose. This add-on provides CIM-compatible knowledge for data collected via the HTTP event collector. After the Splunk platform indexes the events, you can analyze the data directly or using other Splunk apps, such as the Splunk App for AWS and Splunk Enterprise Security. If you want to collect data from other AWS sources, see Splunk Add-on for Amazon Web Services.