I have used windows add on to get events from server to my splunk instance using universal fowarder.
I want some of the monitoring examples that has bean already implemented so that I will go through that, get to practice and apply...
please share some of the example links...
if you see in punithjigali Enterprise Security [Configure -- Content -- Content Management] you can enable or disable Use Cases.
At [Configure -- Content -- Libraries] you can see a description of the Use Cases.
In addition, if you install the Splunk Security Essentials ( https://splunkbase.splunk.com/app/3435/ ), there's an interesting feature that analyze your data and says what use Cases are toggled.