I have Installed Splunk App For Infrastructure and Splunk add-on for infrastructure.
I have configured the HEC 8088 and the Receiving Port 9997.
I have installed a Linux Client with the script.
I made troubleshooting.
In Splunk Enterprise im looking metrics arriving from that customers
I Dont See New Entities Connected!!
😞
You need to specify ALL of the details and the configuration files and the contents of them. This is a complex pipeline and you've hardly told us anything.
Hi carlosmacario,
check if in the eventtypes there are indexes: usually in these apps there isn't the flter for indexes.
you can check this opening in search one panel and adding the filter index=your_index
To solve this problem, you could choose between two solutions:
index=your_index
and put this eventtype in each eventtype or macro of your App.I prefer the second though it requests more work, because it's more clear and more performant.
Ciao.
Giuseppe