Splunk ITSI

How to Transfer Data to ITSI With Splunk Add-on for Unix and Linux

hoangpt
Explorer

Hi everyone, I'm having some trouble and really need your help.

Currently, I'm deploying ITSI Splunk service and using Add-on for Unix and Linux on Splunk. The problem is that when I send data to ITSI, ITSI didn't receive any Entity 

splunk.png

Untitled.png

 
 

 

Down here is my configuration on Add-on for Unix and Linux : 

Screenshot 2020-10-11 160646.png

 
 

 

Also, my Splunk Enterprise has collected Linux log by Universal Forwarder . I don't know what is the problem with my ITSI. Please help me.

Labels (2)
0 Karma

hoangpt
Explorer

11.pngMy configuration on Add-on for Unix and Linux

0 Karma
Get Updates on the Splunk Community!

CX Day is Coming!

Customer Experience (CX) Day is on October 7th!! We're so excited to bring back another day full of wonderful ...

Strengthen Your Future: A Look Back at Splunk 10 Innovations and .conf25 Highlights!

The Big One: Splunk 10 is Here!  The moment many of you have been waiting for has arrived! We are thrilled to ...

Now Offering the AI Assistant Usage Dashboard in Cloud Monitoring Console

Today, we’re excited to announce the release of a brand new AI assistant usage dashboard in Cloud Monitoring ...