Hello,
I have deployed Splunk Apps for Unix. I can see raw data by searching with "index=os", but none of the Splunk Apps dashboards are populating.
Search head + indexer: Splunk Apps for Unix v5.0.2, running Splunk v6.2.2 on Windows
Universal forwarder 6.2.5 with Splunk TA-nix v5.1.2 running on AIX
Is this a supported configuration please?
Thanks,
Jack
try configuring the groups.
which browser are you using?
Do a search for: | metadata type=sourcetypes index=os
Let us know what sourcetypes return