I copied the inputs.conf to the newly created /local directory under Splunk_TA_nix/
my inputs.conf file had disabled = 1 at the end of each stanza, I decided that meant disabled =true and changed them all to disabled =0 and restarted.
then I wend to the portal/indexer (windows) went into the addon window, and made sure they were all set to disable, and then hit save. This brought up the error message about this not being a Linux server, and it would not go away so I am wondering how to use the addon on the portal to view the metrics configured on the Linux box with the universal forwarder?
... View more