All Apps and Add-ons

Question about data ingestion while using Splunk Add-on for Windows

mcsdh
New Member

I have tried parsing through the documentation about the Splunk Add-on for Windows and I think I may confusing topics. Is this add-on supposed to be able to reach out to grab data or is this add-on only supposed to help handle the data once received? I see it talks about using wfm instead of a its normal method, but I suppose I am confused about the normal method. Do you have to use the universal forwarder with it? Any help is appreciated!

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

If Splunk documentation doesn't answer your questions then you should submit feedback on the relevant page.  The Docs team is very good about updating the documentation in response to user feedback.

That said, the best documentation is the app itself.  Download it, expand it, and look for an inputs.conf file.  If it doesn't have one then it doesn't perform data ingestion.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...