All Apps and Add-ons

inputs.conf for Splunk App for Windows Infrastructure 1.5.1 and Splunk Add-on for Microsoft Windows 6.0.0

msaz
Path Finder

Does anyone have a good working inputs.conf for the Splunk App for Windows Infrastructure 1.5.1 and Windows TA 6.0.0 ? Most of the documentation I'm finding relates to upgrading from an earlier version and I have a fresh install. I do not want to use 'main' for the index and have been trying to use the indexes from the instructions for the MSApp 1.5.1.
https://docs.splunk.com/Documentation/MSApp/1.5.1/MSInfra/DownloadandconfiguretheSplunkAdd-onforWind...

Splunk Enterprise 7.2.5, App for Windows Infrastructure 1.5.1, Windows TA 6.0.0

0 Karma
1 Solution

msaz
Path Finder

I found my issue. When i created the apps on the deployment server I renamed them using a naming convention, but some of the scripts called use the default app name in the path, so the scripts weren't running. This one for example.

## Replication Information 2012r2 and 2016
[powershell://Replication-Stats]
script = & "$SplunkHome\etc\apps\Splunk_TA_windows\bin\Invoke-MonitoredScript.ps1" -Command ".\powershell\2012r2-repl-stats.ps1"

View solution in original post

0 Karma

msaz
Path Finder

I found my issue. When i created the apps on the deployment server I renamed them using a naming convention, but some of the scripts called use the default app name in the path, so the scripts weren't running. This one for example.

## Replication Information 2012r2 and 2016
[powershell://Replication-Stats]
script = & "$SplunkHome\etc\apps\Splunk_TA_windows\bin\Invoke-MonitoredScript.ps1" -Command ".\powershell\2012r2-repl-stats.ps1"
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...