I am having a problem with my Splunk instance not displaying any data on the App dashboards. For example, I have the "Analytics for Linux" installed but all the dashboards for the app report "No Results Found". The linux hosts' logs are however are being indexed as I can search them using the normal Splunk search function. This is the case for the Apps I am using.
Kindly advice if there is anything I am missing that will resolve the problem.
Was this ever resolved?
hi @muriithikr Please go to details tab on app page :https://splunkbase.splunk.com/app/3777/#/details
and create indexes.conf
and inputs.conf
and install the app properly first and make sure you are using linux