However, so far, I can't derive anything meaningful for building the dashboards.
I would like to set Splunk to monitor the host operating systems logs files and/or performance data on macOS. I get data in from sources including '/var/log' and '/Library/Logs' but don't see anything meaningful from the data with certain field values filtered. I would also like to monitor the performance data but not sure where they locate at or how to filter the values. Any help would be appreciated! Thanks!
Is the below page what I am supposed to follow? However, I can't find the OSX after clicking 'Add Data'
https://docs.splunk.com/Documentation/InfraApp/2.2.3/Admin/AddDataMacOSX
For performance data, I assume I should monitor the cpu, ram, battery usage, etc. for creating meaningful dashboards? However, are there any logs for this performance data on macOS? If not, how should I get this data in from maybe Activity Monitor? Thanks!