Splunk IT Service Intelligence

How to Transfer Data to ITSI With Splunk Add-on for Unix and Linux

hoangpt
Explorer

Hi everyone, I'm having some trouble and really need your help.

Currently, I'm deploying ITSI Splunk service and using Add-on for Unix and Linux on Splunk. The problem is that when I send data to ITSI, ITSI didn't receive any Entity 

splunk.png

Untitled.png

 
 

 

Down here is my configuration on Add-on for Unix and Linux : 

Screenshot 2020-10-11 160646.png

 
 

 

Also, my Splunk Enterprise has collected Linux log by Universal Forwarder . I don't know what is the problem with my ITSI. Please help me.

Labels (2)
0 Karma

hoangpt
Explorer

11.pngMy configuration on Add-on for Unix and Linux

0 Karma
Get Updates on the Splunk Community!

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...