Splunk ITSI

How to Transfer Data to ITSI With Splunk Add-on for Unix and Linux

hoangpt
Explorer

Hi everyone, I'm having some trouble and really need your help.

Currently, I'm deploying ITSI Splunk service and using Add-on for Unix and Linux on Splunk. The problem is that when I send data to ITSI, ITSI didn't receive any Entity 

splunk.png

Untitled.png

 
 

 

Down here is my configuration on Add-on for Unix and Linux : 

Screenshot 2020-10-11 160646.png

 
 

 

Also, my Splunk Enterprise has collected Linux log by Universal Forwarder . I don't know what is the problem with my ITSI. Please help me.

Labels (2)
0 Karma

hoangpt
Explorer

11.pngMy configuration on Add-on for Unix and Linux

0 Karma
Get Updates on the Splunk Community!

New Case Study Shows the Value of Partnering with Splunk Academic Alliance

The University of Nevada, Las Vegas (UNLV) is another premier research institution helping to shape the next ...

How to Monitor Google Kubernetes Engine (GKE)

We’ve looked at how to integrate Kubernetes environments with Splunk Observability Cloud, but what about ...

Index This | How can you make 45 using only 4?

October 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...