hi all, i have configured splunk app for active directory. i am getting row data from active directory.
But when i am going through splunk app for AD there i can not see any kind of log, event, or data.
my configuration...
Universal forwarder is installed in Active directory. with the correct port number 9997. As well as WMI is also correctly configured.
Splunk 5 (receiver) is installed in one machine. and active directory app is also installed in same splunk instance.
user have full access.
but still i am not getting data.
please help me to solve this.
... View more