Ok thats the reason why.
you defined the parameter sourcetype with values that are not known by the splunk app for *nix.
The searches are based on sourcetypes.
Take the inputs.conf provided with the Splunk_TA_nix and configure it on your ufs.
After this you have the correct sourcetypes defined the Splunk App for *nix will show results.
kind regards
... View more