Getting Data In

Windows UF using High Memory and processor

afolabia
Path Finder

I have reviewed similar questions but haven't found a fix to this.
My windows UF is utilizing high memory and processes, causing the servers to become inaccessible. I'm having too many powershell scripts launched, although I have disabled all the PS scripts in the deployed TA_windows . Is there anywhere else in Splunk I need to look for PS Scripts that may be causing this problem?

Tags (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @afolabia,
I had this problem many times, all the times Splunk Support suggested to upgrade UF version, sometimes also using an UF version higher that the Indexer's version.
The problem was related to the connection with the DC to resolve the address.

Ciao.
Giuseppe

0 Karma
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...