All Apps and Add-ons

Splunk App for Vmware 3.0 No data displayed

Lazarix
Communicator

Hi all,

I've got the splunk app for vmware on a trial and under the collection config, everything is configured. I have a green tick on the data collection node, and green ticks on the virtual centre, VC credentials and syslog validation.
It also reports that it is monitoring 14 hosts, which is correct.

Disturbingly, in 3 hours, the vclog has indexed 1.39GB of data (1,000% of my current daily usage!) yet under home, or proactive monitoring or any other tab or page, nothing at all is displayed.

0 Karma
1 Solution

abhide_splunk
Splunk Employee
Splunk Employee

Couple of checks:

  1. Have you clicked the green "Start scheduler" button at the bottom of the "Collection Configuration" dashboard. If you have not then data collection would not have started. If you have then the button text should read "Stop scheduler".

  2. Have you checked to make sure your user has the required roles assinged. See point number 6: http://docs.splunk.com/Documentation/VMW/latest/Install/InstallontheISH. Without these roles assigned to the user the data wont show up.

  3. Also in the "App Install health" view under the "Settings" menu you should be able to see what data is being indexed.

View solution in original post

abhide_splunk
Splunk Employee
Splunk Employee

Couple of checks:

  1. Have you clicked the green "Start scheduler" button at the bottom of the "Collection Configuration" dashboard. If you have not then data collection would not have started. If you have then the button text should read "Stop scheduler".

  2. Have you checked to make sure your user has the required roles assinged. See point number 6: http://docs.splunk.com/Documentation/VMW/latest/Install/InstallontheISH. Without these roles assigned to the user the data wont show up.

  3. Also in the "App Install health" view under the "Settings" menu you should be able to see what data is being indexed.

i2sheri
Communicator

Thanks @abhide # 3 is very helpful, I missed the roles for my user.
Now I see data but no performance data

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...