All Apps and Add-ons

Can you use Splunk App for Infrastructure to monitor Red Hat Enterprise and Windows 2008R2 servers?

qhma
New Member

Any one know if we can use Splunk App for Infrastructure to monitor Red Hat Enterprise 6.7/6.8 servers and Windows 2008R2 servers?

0 Karma

dagarwal_splunk
Splunk Employee
Splunk Employee

One thing:
"Splunk Add-on for Windows may not be not compatible with Splunk App for Infrastructure."
https://docs.splunk.com/Documentation/InfraApp/1.2.0/ReleaseNotes/Knownissues

If you have both "Add-on for Windows" and "App for Infrastructure" on the same Splunk instance, it might not work. Otherwise, it should work fine. Make sure you use "index=em_metrics" for perfmon data in your inputs.conf.

0 Karma

qhma
New Member

@dagarwal_splunk Thanks! Then, is it possible to install Splunk TA for Windows to client machine with UF, then let UF forward Windows performance data to Splunk Enterprise server which has Splunk App for Infrastructure and Splunk Add On for Infrastructure installed? Can Splunk App for Infrastructure and Splunk Add On for Infrastructure process these data collected by Splunk TA for Windows properly?

0 Karma

qhma
New Member

Yes these versions are supported by Splunk Enterprise 7.1 and 7.2, but my question is:
If I want to install Splunk App for Infrastructure and Splunk add on for Infrastructure on top of Splunk Enterprise 7.1 or 7.2, can I install a data collection agent installation script (generated by Splunk App for Infrastructure, and which is a collectd daemon and universal forwarder) on the host machine from which you are collecting data? These host machine OS versions are Red Hat Enterprise 6.7/6.8 servers and Windows 2008R2 servers.

0 Karma

dagarwal_splunk
Splunk Employee
Splunk Employee

For monitoring using Splunk App for Infrastructure:
Redhat 6.7/6.8 servers are supported.
Windows 2008R2 not officially supported. But, it might still work.

0 Karma

493669
Super Champion

Linux & Windows both Environments are supported with splunk version 7.1.0 or 7.2.0

0 Karma
Get Updates on the Splunk Community!

Splunk Search APIを使えば調査過程が残せます

   このゲストブログは、JCOM株式会社の情報セキュリティ本部・専任部長である渡辺慎太郎氏によって執筆されました。 Note: This article is published in both Japanese ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...