Getting Data In

How do I add additional performance counters to the Splunk UF Collector?

MTravisVolker
Explorer

We are attempting to add Microsoft RAS Total counters from PerfMon to the Splunk UF collector. We updated the local/inputs.conf as follows.
alt text

These counters are available on the host but they aren't being collected by Splunk.

jgibby
Explorer

I found this useful:

Specify valid regular expressions to capture multiple performance monitor objects

instead of asterisk, you'd have to use dot-asterisk or be explicit with the object, example:

object = RAS Total

also:
If you set the useEnglishOnly attribute to true, you cannot use wildcards or regular expressions for...

Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Get the T-shirt to Prove You Survived Splunk University Bootcamp

As if Splunk University, in Las Vegas, in-person, with three days of bootcamps and labs weren’t enough, now ...

Wondering How to Build Resiliency in the Cloud?

IT leaders are choosing Splunk Cloud as an ideal cloud transformation platform to drive business resilience,  ...