Splunk Enterprise

splunk-powershell.exe

prakashraja1999
Loves-to-Learn Everything

In the environment where Splunk is running, it is called "splunk-powershell.exe" The process is running.

What role does this process play? This executable file was in the following folder, When I looked up the property, there was no information. → C: \ Program Files \ SplunkUniversalForwarder \ bin \ Please tell me more about this process.

0 Karma

Stefanie
Builder

splunk-powershell.exe is used for some of the modular inputs for windows specific devices.

If you look in a inputs.conf on your Universal Forwarder, there are stanzas that start with [powershell://.............................] 

That is what splunk-powershell.exe references.

0 Karma
Get Updates on the Splunk Community!

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...