Getting Data In

New Windows Performance Monitoring not working

flyers777
Explorer

Hello,

First time posting here and I have been hitting a break wall today. I have been trying to add two new Windows Performance Monitors from a forwarder.

Here is an example of the one that is currently working.
Collection Name: Test_Processor
Index:perfmon_test
This one is working the one below is setup the same way and I have double checked both the local and remote server inputs.conf file and they are updated with what I am requesting Splunk to send back.
Here is an example of one that is not working
[perfmon://Test_System]
disabled = 0
index = perfmon_test
instances = ;
interval = 60
object = System
counters = File Read Bytes/sec;File Read Operations/sec;File Write Bytes/sec;File Write Operations/sec;System Up Time;Processes;

I have restarted the Forwarder service and the Splunk services and still have no luck. Was wondering if anyone else has had any luck or a similar problem. Thanks for the help.

0 Karma
1 Solution

flyers777
Explorer

Just wanted to update everyone the solution was to remove the empty field of instances. Thanks.

View solution in original post

0 Karma

flyers777
Explorer

Just wanted to update everyone the solution was to remove the empty field of instances. Thanks.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...