- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Splunk Security Essentials: After installing the App on our Search Head Cluster, why can't we see any of our data?
halbeisendv
Path Finder
09-17-2018
11:02 AM
When I installed the App on a stand-alone server, it worked fine. But, when I installed it on our Search Head Cluster, we are not able to view any of the data under the Data Source Check tab. Even clicking "Start Searches" yields no action. What's the fix? Thanks.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
GDustin
Path Finder
10-18-2018
12:06 AM
_bump seemed to do it for me described here; https://answers.splunk.com/answers/640561/why-does-the-splunk-security-essentials-app-has-mi.html
