Splunk Search

setup and search matters

HY
Explorer

What are the configuration/setup I have to do in order to use Splunk in Redhat Enterprise Linux? What is the reason of why I can't search anything like top 10 process by CPU that kind of thing, and it shows no search results in redhat Enterprise Linux?

Tags (2)
0 Karma

MarioM
Motivator

To install full Splunk on Redhat as per documentation here is the instruction:
RedHat RPM install:
Install on Linux

And for the universal forwarder:
Deploy a *nix universal forwarder manually

Then you need to install Splunk for Unix and Linux app and go through the setup:
Splunk for Unix and Linux

0 Karma

Ayn
Legend

I think it's wiser to take the pains to go through the process of installing everything and learning about how it works in the process rather than taking a step-by-step list compiled by someone here. There is excellent documentation in the links MarioM provided.

0 Karma

HY
Explorer

I looked at all the instructions for all the links you had provided for me but I couldn't understand. May I appreciate you to explain all the configurations needed for Linux because I keep having problems with the search portion in Splunk?

0 Karma
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...