Hey all:
I've installed an eval copy of the latest version of splunk, universal forwarder and Splunk app for Windows Infrastructure.
When I go to view/search for certain performance metrics most are there - CPU, Memory, LogicalDisk, etc..
However PhysicalDisk, System and Process are not loading metrics in the performance dashboard. I also cannot do a search against that object type. Splunk simply appears to be ignoring/missing that data.
How can I start gathering these metrics?
Thanks.
Hi there. Have you deployed the TA-windows and turned on the inputs inside of it? Without the TA-windows (Splunk Add-on for Windows) you will not receive any Windows-related data.
All steps are located on the documentation page for the app, located here:
http://docs.splunk.com/Documentation/MSApp/1.0.2/MSInfra/Platformandhardwarerequirements
uhhh.... no "configuration steps" are mentioned on the documentation page you reference.
What is the next configuration step?
Don't forget there's a configuration step as well to turn on the inputs.
Yes I've installed the app.