<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ITSI Modules Problem in Splunk ITSI</title>
    <link>https://community.splunk.com/t5/Splunk-ITSI/ITSI-Modules-Problem/m-p/381274#M579</link>
    <description>&lt;P&gt;Dears&lt;/P&gt;

&lt;P&gt;Im using ITSI version 4.0 , i followed the documentation for the installation but yet the default modules that comes with ITSI like OS, webserver etc .., is not working probably, when ever i want to do auto discovery for entities using module search like OS one, it give me an error savedsearch is not found tho it is enabled and i can search for it in the ITSI-search, &lt;/P&gt;

&lt;P&gt;so i start copying conflagration from the Modules to the ITOA/local/ and it worked .. is this normal case or not?? &lt;BR /&gt;
can anyone advice me!&lt;/P&gt;

&lt;P&gt;Thanks already&lt;/P&gt;</description>
    <pubDate>Sat, 18 May 2019 11:05:40 GMT</pubDate>
    <dc:creator>stromy</dc:creator>
    <dc:date>2019-05-18T11:05:40Z</dc:date>
    <item>
      <title>ITSI Modules Problem</title>
      <link>https://community.splunk.com/t5/Splunk-ITSI/ITSI-Modules-Problem/m-p/381274#M579</link>
      <description>&lt;P&gt;Dears&lt;/P&gt;

&lt;P&gt;Im using ITSI version 4.0 , i followed the documentation for the installation but yet the default modules that comes with ITSI like OS, webserver etc .., is not working probably, when ever i want to do auto discovery for entities using module search like OS one, it give me an error savedsearch is not found tho it is enabled and i can search for it in the ITSI-search, &lt;/P&gt;

&lt;P&gt;so i start copying conflagration from the Modules to the ITOA/local/ and it worked .. is this normal case or not?? &lt;BR /&gt;
can anyone advice me!&lt;/P&gt;

&lt;P&gt;Thanks already&lt;/P&gt;</description>
      <pubDate>Sat, 18 May 2019 11:05:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-ITSI/ITSI-Modules-Problem/m-p/381274#M579</guid>
      <dc:creator>stromy</dc:creator>
      <dc:date>2019-05-18T11:05:40Z</dc:date>
    </item>
    <item>
      <title>Re: ITSI Modules Problem</title>
      <link>https://community.splunk.com/t5/Splunk-ITSI/ITSI-Modules-Problem/m-p/381275#M580</link>
      <description>&lt;P&gt;Hi @stromy,&lt;BR /&gt;
     I don't know whether you are on the right path or not, but I'm giving below steps that worked for me.&lt;/P&gt;

&lt;P&gt;For automatic entity discovery:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;Go to Settings &amp;gt; Data Inputs &amp;gt; ITSI Entity CSV Imports &amp;gt; Enable the services for which you want to enable automatic entity discovery.&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;For manual entity import:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;ITSI App &amp;gt; Configure &amp;gt; Entity &amp;gt; Import &amp;gt; Import from Search &amp;gt; Select Module &amp;gt; Select Service Savedsearch &amp;gt; Run Search  &amp;gt; Import.&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;If these steps are not working for you then I think you might have made some mistake in App installation. I'm guessing this because you are saying you are getting the error of savedsearch not found.&lt;/P&gt;

&lt;P&gt;Hope this helps!!&lt;/P&gt;</description>
      <pubDate>Sun, 19 May 2019 06:11:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-ITSI/ITSI-Modules-Problem/m-p/381275#M580</guid>
      <dc:creator>VatsalJagani</dc:creator>
      <dc:date>2019-05-19T06:11:10Z</dc:date>
    </item>
  </channel>
</rss>

