I have installed the Splunk App for Windows Infrastructure in my environment. All logs are coming to the indexer, but the dashboard is not populating. When I check for the search, it started with search: eventtype = "XXXXX" . So, when I copy paste the same search in the search bar, it is not working when I add the prefix index = "*" it is working. Can any one help?
Thanks in advance
... View more