All Apps and Add-ons

Splunk App for Vmware 3.0 No data displayed

Lazarix
Communicator

Hi all,

I've got the splunk app for vmware on a trial and under the collection config, everything is configured. I have a green tick on the data collection node, and green ticks on the virtual centre, VC credentials and syslog validation.
It also reports that it is monitoring 14 hosts, which is correct.

Disturbingly, in 3 hours, the vclog has indexed 1.39GB of data (1,000% of my current daily usage!) yet under home, or proactive monitoring or any other tab or page, nothing at all is displayed.

0 Karma
1 Solution

abhide_splunk
Splunk Employee
Splunk Employee

Couple of checks:

  1. Have you clicked the green "Start scheduler" button at the bottom of the "Collection Configuration" dashboard. If you have not then data collection would not have started. If you have then the button text should read "Stop scheduler".

  2. Have you checked to make sure your user has the required roles assinged. See point number 6: http://docs.splunk.com/Documentation/VMW/latest/Install/InstallontheISH. Without these roles assigned to the user the data wont show up.

  3. Also in the "App Install health" view under the "Settings" menu you should be able to see what data is being indexed.

View solution in original post

abhide_splunk
Splunk Employee
Splunk Employee

Couple of checks:

  1. Have you clicked the green "Start scheduler" button at the bottom of the "Collection Configuration" dashboard. If you have not then data collection would not have started. If you have then the button text should read "Stop scheduler".

  2. Have you checked to make sure your user has the required roles assinged. See point number 6: http://docs.splunk.com/Documentation/VMW/latest/Install/InstallontheISH. Without these roles assigned to the user the data wont show up.

  3. Also in the "App Install health" view under the "Settings" menu you should be able to see what data is being indexed.

i2sheri
Communicator

Thanks @abhide # 3 is very helpful, I missed the roles for my user.
Now I see data but no performance data

0 Karma
Get Updates on the Splunk Community!

Dashboard Studio Challenge - Learn New Tricks, Showcase Your Skills, and Win Prizes!

Reimagine what you can do with your dashboards. Dashboard Studio is Splunk’s newest dashboard builder to ...

Introducing Edge Processor: Next Gen Data Transformation

We get it - not only can it take a lot of time, money and resources to get data into Splunk, but it also takes ...

Take the 2021 Splunk Career Survey for $50 in Amazon Cash

Help us learn about how Splunk has impacted your career by taking the 2021 Splunk Career Survey. Last year’s ...