Hello,
I am also new to plunk and had the same issue and observed that, under settings --> Access Controls --> Roles --> for the admin role, the 3 indexes which i had created manually( windows, wineventlog and perfmon) were not selected in the list of indexes to be searched by default. I added the indexes and the app was able to detect the events from the indexes durinng the guided setup.
The thing is, I had installed the Unix app as well for which I had created an index manually as well( index name : os) but that was somehow already selected in the list of searches.
Thanks,
Sapan
... View more