All Apps and Add-ons

Devices Dashboard empty

jbueso
Path Finder

Hi everyone

I am deploying mi-splunk-app-6.0.0.tar.gz (MI-Splunk version 6.0.0) against my VSP 6.0.0 build 311.

I set up the listener in splunk (port 9991) and the splunk forwarder in VSP, and forwarder is connected, but only receive health information from the machine, nothing about associated devices.

The VPS dashboard reporting and overview are empty.

Do I need to configure something else?

0 Karma

bdenis
Engager

Hi
I have the same problem. Have you find any solution ?

Thanks

0 Karma

jzarris
New Member

This may sound obvious, but did you set up an index called "midevices"? There are three indexes that receive information.

  1. midevices
  2. mihealth
  3. mijvm

If you continue to have problems, I suggest you open a ticket with MobileIron support.

0 Karma

MuS
Legend

check the routing on the MobileIron appliance and the receiving port on the Splunk server must be a receiving port not a data input TCP port.

bdenis
Engager

I have restart both Splunk and MobileIron server physically this morning (again) and get some data whithout changing anything in the configuration (Splunk forwarder with Splunk server IP and port 42424 and Splunk receiver listening on the same port) but since nothing. I try to understand why...

0 Karma

jbueso
Path Finder

It still empty. Any idea?

0 Karma
Get Updates on the Splunk Community!

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...

Adoption of Infrastructure Monitoring at Splunk

  Splunk's Growth Engineering team showcases one of their first Splunk product adoption-Splunk Infrastructure ...