<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk App for Unix and Linux configuration in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366786#M44319</link>
    <description>&lt;P&gt;Have you installed this add-on on Indexers as well because add-on will send data to &lt;CODE&gt;os&lt;/CODE&gt; index, so you must have &lt;CODE&gt;os&lt;/CODE&gt; index on Indexers.&lt;/P&gt;</description>
    <pubDate>Wed, 27 Dec 2017 13:26:02 GMT</pubDate>
    <dc:creator>harsmarvania57</dc:creator>
    <dc:date>2017-12-27T13:26:02Z</dc:date>
    <item>
      <title>Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366783#M44316</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;

&lt;P&gt;I've installed Splunk App for Unix and Linux and Splunk Add-on for Unix and Linux. I want to monitor basic things about my machine as CPU usage, memory etc. &lt;BR /&gt;
In documentation I've read that for the first install there is no need to do any changes in Settings -&amp;gt; Your Data.&lt;/P&gt;

&lt;P&gt;When I want to display home dashboard it shows No results found. Can it be connected with sourcetype in Settings -&amp;gt; your data, because I leave it with default.&lt;BR /&gt;
I would be grateful for some advice. &lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 11:56:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366783#M44316</guid>
      <dc:creator>swdowiarz</dc:creator>
      <dc:date>2017-12-27T11:56:24Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366784#M44317</link>
      <description>&lt;P&gt;Hi @swdowiarz,&lt;/P&gt;

&lt;P&gt;You need to configure Splunk Add-on for Unix and Linux first which will run different script at certain interval (You can configure this) to monitor CPU, Memory, Disk Usage etc. Please refer this &lt;A href="https://docs.splunk.com/Documentation/UnixAddOn/5.2.4/User/Enabledataandscriptedinputs"&gt;documentation&lt;/A&gt; to configure Splunk Add-on for Unix and Linux so that it will send data to Indexers and after that you can search data from Search head.&lt;/P&gt;

&lt;P&gt;I hope this helps.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Harshil&lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 12:22:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366784#M44317</guid>
      <dc:creator>harsmarvania57</dc:creator>
      <dc:date>2017-12-27T12:22:41Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366785#M44318</link>
      <description>&lt;P&gt;I did configuration for Splunk Add-on for Unix and Linux and all the inputs are enable, but there still nothing to show. &lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 13:01:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366785#M44318</guid>
      <dc:creator>swdowiarz</dc:creator>
      <dc:date>2017-12-27T13:01:53Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366786#M44319</link>
      <description>&lt;P&gt;Have you installed this add-on on Indexers as well because add-on will send data to &lt;CODE&gt;os&lt;/CODE&gt; index, so you must have &lt;CODE&gt;os&lt;/CODE&gt; index on Indexers.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 13:26:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366786#M44319</guid>
      <dc:creator>harsmarvania57</dc:creator>
      <dc:date>2017-12-27T13:26:02Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366787#M44320</link>
      <description>&lt;P&gt;Yes, I did it, when I search index=os there are lot of events but instead of dashboards there is still No results found&lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 13:29:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366787#M44320</guid>
      <dc:creator>swdowiarz</dc:creator>
      <dc:date>2017-12-27T13:29:17Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk App for Unix and Linux configuration</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366788#M44321</link>
      <description>&lt;P&gt;So based on my understanding, you are not able to see any data in Splunk App for Unix and Linux Dashboard, in that case have you configured Splunk App for Unix and Linux, reference docs &lt;A href="http://docs.splunk.com/Documentation/UnixApp/5.2.3/User/First-timeconfiguration"&gt;http://docs.splunk.com/Documentation/UnixApp/5.2.3/User/First-timeconfiguration&lt;/A&gt; and if you go to next pages it will give you idea about different dashboards/pages.&lt;/P&gt;

&lt;P&gt;If data is coming from Add-on with default sourcetype then in App for Unix and Linux Settings-&amp;gt; Your Data page you need to click save button.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Dec 2017 13:44:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-App-for-Unix-and-Linux-configuration/m-p/366788#M44321</guid>
      <dc:creator>harsmarvania57</dc:creator>
      <dc:date>2017-12-27T13:44:24Z</dc:date>
    </item>
  </channel>
</rss>

