Getting Data In

Need WMI polling. How to run Splunk as a non-Domain Admin user?

the_wolverine
Champion

We need Splunk to be able to poll remote hosts for WMI events. How do we run Splunk as an account that is NOT part of the DA group? This is an issue with our System Administrator not allowing Splunk user to be part of DA.

I've seen a lot of posts and questions/answers and some documentation but nothing straight-forward.

0 Karma

irvingwei
New Member

It is very nice post I found some relative information in

blow site.
please visit:
http://www.quoriosity.com/

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...