<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found. in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308673#M40305</link>
    <description>&lt;P&gt;I've managed to build my first graph and dashboard, which is supposed to monitor the free disk space of a remote host.&lt;BR /&gt;
The remote host is a Windows OS while Splunk Enterprise is installed on a Unix system.&lt;/P&gt;

&lt;P&gt;When I create an indexer with some parameters to pull '% Free Space' from the Universal Forwarder (the remote host I want to monitor), I almost immediately receive data from it. I set polling interval to 60s&lt;BR /&gt;
I create a Search and build a line chart from it which is now displayed on my dashboard. &lt;BR /&gt;
However, it seems that no data is added anymore. Executing a search is not showing any new events, even though the interval should be 60s. &lt;/P&gt;

&lt;P&gt;Using Splunk Web, I go to 'Data inputs' &amp;gt; 'Local performance monitoring' &amp;gt; Select the input I just created&lt;BR /&gt;
I see the following errors: &lt;STRONG&gt;Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.&lt;/STRONG&gt;&lt;BR /&gt;
This error is displayed for 'Available objects', 'Counters', 'Instances'&lt;/P&gt;

&lt;P&gt;I'm suspecting that this error is the cause that my graph is not being updated.&lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;How can I resolve this error?&lt;/LI&gt;
&lt;LI&gt;How can I resolve the issue with my graph?&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;Know that I didn't add additional lines in any config file.&lt;BR /&gt;
Let me know if more information is needed.&lt;/P&gt;</description>
    <pubDate>Thu, 30 Nov 2017 09:44:38 GMT</pubDate>
    <dc:creator>bwouters</dc:creator>
    <dc:date>2017-11-30T09:44:38Z</dc:date>
    <item>
      <title>Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308673#M40305</link>
      <description>&lt;P&gt;I've managed to build my first graph and dashboard, which is supposed to monitor the free disk space of a remote host.&lt;BR /&gt;
The remote host is a Windows OS while Splunk Enterprise is installed on a Unix system.&lt;/P&gt;

&lt;P&gt;When I create an indexer with some parameters to pull '% Free Space' from the Universal Forwarder (the remote host I want to monitor), I almost immediately receive data from it. I set polling interval to 60s&lt;BR /&gt;
I create a Search and build a line chart from it which is now displayed on my dashboard. &lt;BR /&gt;
However, it seems that no data is added anymore. Executing a search is not showing any new events, even though the interval should be 60s. &lt;/P&gt;

&lt;P&gt;Using Splunk Web, I go to 'Data inputs' &amp;gt; 'Local performance monitoring' &amp;gt; Select the input I just created&lt;BR /&gt;
I see the following errors: &lt;STRONG&gt;Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.&lt;/STRONG&gt;&lt;BR /&gt;
This error is displayed for 'Available objects', 'Counters', 'Instances'&lt;/P&gt;

&lt;P&gt;I'm suspecting that this error is the cause that my graph is not being updated.&lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;How can I resolve this error?&lt;/LI&gt;
&lt;LI&gt;How can I resolve the issue with my graph?&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;Know that I didn't add additional lines in any config file.&lt;BR /&gt;
Let me know if more information is needed.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2017 09:44:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308673#M40305</guid>
      <dc:creator>bwouters</dc:creator>
      <dc:date>2017-11-30T09:44:38Z</dc:date>
    </item>
    <item>
      <title>Re: Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308674#M40306</link>
      <description>&lt;P&gt;I installed Splunk Universal Forwarder as 'Local User'&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2017 09:59:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308674#M40306</guid>
      <dc:creator>bwouters</dc:creator>
      <dc:date>2017-11-30T09:59:32Z</dc:date>
    </item>
    <item>
      <title>Re: Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308675#M40307</link>
      <description>&lt;P&gt;I found an answer to my second question.&lt;/P&gt;

&lt;P&gt;I added the following config to the 'inputs.conf' file on the Universal Forwarder&lt;BR /&gt;
[perfmon://match the name in splunk web - data input]&lt;BR /&gt;
disabled = 0&lt;BR /&gt;
counters = % Free Space&lt;BR /&gt;
instances = *&lt;BR /&gt;
interval = 60&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2017 10:41:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308675#M40307</guid>
      <dc:creator>bwouters</dc:creator>
      <dc:date>2017-11-30T10:41:59Z</dc:date>
    </item>
    <item>
      <title>Re: Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found.</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308676#M40308</link>
      <description>&lt;P&gt;I am experiencing the same issue. We have Splunk 7.1 on Linux and I am trying to monitor Windows infrastructure. I've deployed the Splunk app for Windows Infrastructure + all the related add-ons and when I go to "Settings" -&amp;gt; "Data Inputs" -&amp;gt; "Forwarded Inputs" -&amp;gt; "Windows Performance Monitoring" I am presented with a screen that says "Local Performance Monitoring". That is strange?!&lt;/P&gt;

&lt;P&gt;Also, when I try to dig further down from there, e.g. I click on the "Processor" input I receive the above mentioned error message "Failed to fetch data: Admin handler 'win-perfmon-find-collection' not found." all over the screen.&lt;/P&gt;

&lt;P&gt;Should I ignore this message, or there's an issue with my configuration? All the forwarders are installed on Windows desktops and servers with Local System account.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Oct 2018 15:39:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Failed-to-fetch-data-Admin-handler-win-perfmon-find-collection/m-p/308676#M40308</guid>
      <dc:creator>vanvan</dc:creator>
      <dc:date>2018-10-09T15:39:26Z</dc:date>
    </item>
  </channel>
</rss>

