I followed the the whole documentation but I got one problem. I didn´t get any log files in my splunk indexer. I built a test environment with two Windows Server 2008 R2:
Server A (Monitored client with the splunk forwarder IP 172.28.28.27)
Windows Server B (runs Splunk enterprise with indexer, deployment server (sendtoindexer app, splunk Add-on for Windows) IP 172.28.28.28)
But I didn´t get any logfiles. My setup looks like this:
The configured forwarder
http://www0.xup.in/exec/ximg.php?fid=10607561
the sendtoindexer app
http://www0.xup.in/exec/ximg.php?fid=41677695
the windows app
http://www0.xup.in/exec/ximg.php?fid=20050979
The Forward Management on splunk enterprise
http://www0.xup.in/exec/ximg.php?fid=16913503
http://www0.xup.in/exec/ximg.php?fid=34496890
http://www0.xup.in/exec/ximg.php?fid=16003466
My searchhed shows always: Waiting for input.
Can anyone help me?
Thanks a lot
... View more