Content Pack for Monitoring Microsoft Windows

Content Pack for Monitoring Microsoft Windows

This documentation does not apply to the most recent version of Content Pack for Monitoring Microsoft Windows. For documentation on the most recent version, go to the latest release.

Upgrade to version 1.1.0 of the Content Pack for Monitoring Windows

The new version of the content pack contains all necessary macros, and the macro itsi-cp-windows-indexes needs to be deleted.

The steps below describe how to upgrade to version 1.1.0 of the content pack:

  • Remove the macro.
  • Upgrade the Splunk App for Content Packs.
  • Upgrade the Content Pack for Monitoring Microsoft Windows.
  • Update Macros with custom index.
  • Prerequisites

    Create a full backup of your ITSI environment in case you need to revert the upgrade. For more information, see Create a Full Backup in the Administer Splunk IT Service Intelligence manual.

    Step 1: Remove the macro

    Remove the macro named itsi-cp-windows-indexes from Settings > Advance Search > Search Macros. This macro is packaged by default with the content pack.

    Step 2: Upgrade the Splunk App for Content Packs

  • Check which version of Splunk App for Content Packs is compatible with your ITSI version in the deployment requirements.
  • Download version 1.5.0 of the Splunk App for Content Packs from Splunkbase.
  • Follow the installation steps to upgrade the Splunk App for Content Packs.
  • Restart Splunk.
  • Step 3. Upgrade the Content Pack for Monitoring Microsoft Windows

    Follow these steps to re-install the content pack. Make sure to select the Replace Existing parameter while reinstalling the installed ITSI objects to incorporate the new updates.

    Step 4. (Optional) Update Macros with custom index

    Follow these steps to update the macros.

    Last modified on 09 November, 2022
    Use the Content Pack for Monitoring Microsoft Windows  

    This documentation applies to the following versions of Content Pack for Monitoring Microsoft Windows: 1.1.0


    Was this topic useful?







    You must be logged into splunk.com in order to post comments. Log in now.

    Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

    0 out of 1000 Characters