OK this problem has been resolved and is now working. simple reason for it, on a default install of splunk it does not index any data at all..
so even though the data inputs window shows there are data inputs none of them are being monitored by default you have to enable them in the manager interface.
... View more