Hi ,
I have installed Splunk app for windows infrastructure yesterday but it didn't started indexing straightaway.I haven't configured any input as it has pre-built data inputs, searches, reports, and dashboards for Windows server and desktop management.When i checked today also,the data is still not showing up.I haven't altered any configuration files.
is there something that i might be missing?
I have a problem with this app ...
On one server dropdown list for Dimensions is working, on another server is not working and on local machine also not working. What is going wrong here?
I have to mention that on local machine i don't have full admin rights. I don't know what kind of rights i have on the not working server and also i don't know if i have some or full admin rights on working server.
This problem could be generated by admin rights?
Thank you.
Bogdan.
Below Deployment topology may be able to assist you,
http://docs.splunk.com/images/b/bd/Typical_Splunk_App_for_Windows_Layout.png
You need to start collecting data for your Windows servers
You still need to install the add-ons that come with the app onto your Windows servers before they can collect data and send to the app.
More information here: http://docs.splunk.com/Documentation/MSApp/1.0/MSInfra/HowtodeploytheSplunkAppforWindowsInfrastructu...
But this app already pre-built pre-built data inputs,which includes inputs for performance metrics, event logs, user and audit data.I don't think I need to collect data as it will do on its own.
See below:-
http://apps.splunk.com/app/1680/