Splunk Enterprise Security

Windows Universal Forwarder GPO

a1servinem777
New Member

Hello I am having issues with my agent authentication and installation.
I set up a service account on our domains.
Created the group recommended from the documentation for users and computers.
Added the permissions to the groups and gpo and applied them to the default domain controller policy.

When I install it I under a domain account
domain\username
password

Specify the logs and send them to the deployment server.
Then I logged in the splunk dashboard and am not seeing the host.

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

SignalFlow: What? Why? How?

What is SignalFlow? Splunk Observability Cloud’s analytics engine, SignalFlow, opens up a world of in-depth ...

Federated Search for Amazon S3 | Key Use Cases to Streamline Compliance Workflows

Modern business operations are supported by data compliance. As regulations evolve, organizations must ...