Install and Setup Splunk Enterprise Server and Splunk Universal Forwarder on an AWS EC2 instance.
Launch creation of an EC2 instance - Launch Instance
Set Name as splunk and leave the rest of the defaults
Set Key pair as one you created or Create a new key pair (RSA and .pem format) and Launch Instance button to create the EC2 instance
Navigate to the new instance and grab the public IPv4 address
If you don’t have SSH
sudo apt install ssh
SSH into the instance
Perform an update
sudo yum update
Go to https://splunk.com, login and navigate to My Dashboard
Scroll down to the Free trials and downloads section, will need Splunk Enterprise
Navigate to Linux and click the Download button for .rpm