Monitoring Splunk

Remote Performance monitoring in Splunk server on Linux

rajeshm
Explorer

Hi

We have installed Splunk indexer on Linux and also windows application in it.

We are not getting the following option in data inputs.

Local event log collection.
Remote event log collections.
Local performance monitoring.
Remote performance monitoring.
Registry monitoring.
Active Directory monitoring.

Want to monitor remote windows machine using WMI.

Regards

Rajesh

Tags (1)
0 Karma

Ayn
Legend

You cannot monitor WMI data from a Linux indexer, as WMI polling uses native Windows syscalls.

dwaddle
SplunkTrust
SplunkTrust

You could install a single Windows-based forwarder just for the purpose of doing remote WMI off of your other Windows systems.

0 Karma
Get Updates on the Splunk Community!

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Enhance Security Operations with Automated Threat Analysis in the Splunk EcosystemAre you leveraging ...

Splunk Developers: Go Beyond the Dashboard with These .Conf25 Sessions

  Whether you’re building custom apps, diving into SPL2, or integrating AI and machine learning into your ...

Index This | How do you write 23 only using the number 2?

July 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this month’s ...