Hi everyone, I'm having some trouble and really need your help.
Currently, I'm deploying ITSI Splunk service and using Add-on for Unix and Linux on Splunk. The problem is that when I send data to ITSI, ITSI didn't receive any Entity
Down here is my configuration on Add-on for Unix and Linux :
Also, my Splunk Enterprise has collected Linux log by Universal Forwarder . I don't know what is the problem with my ITSI. Please help me.
My configuration on Add-on for Unix and Linux