Splunk® Content Packs for ITSI and IT Essentials Work

Splunk Content Packs for ITSI and IT Essentials Work

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

Install and Configure the Content Pack for VMware Dashboards and Reports

Perform the following high-level steps to configure the Content Pack for VMware Dashboards and Reports:

  1. Install and Configure Splunk Add-on for VMware Metrics.
  2. Install the Content Pack.
  3. Enable the Data model acceleration.

Prerequisites

  • The ITSI or IT Essentials Work app is installed and configured in your environment.
  • Use of a supported version of VMware vCenter Server to manage hypervisors - Content Pack for VMware Dashboards and Reports integrates with a vCenter Server and the hypervisors it manages. Environments with Windows-based vCenter and/or Linux-based vCenter Server Appliance are supported. ESXi servers that are not managed through vCenter are not supported.

Step 1: Install and Configure the Splunk Add-on for VMware Metrics

Content Pack for VMware Dashboards and Reports uses the data collected by Splunk Add-on for VMware Metrics. You can configure the Splunk Add-on for VMware Metrics by deploying it on the required components. You can also create the DCN machine by deploying Splunk OVA for VMware Metrics in the virtualization environment.

The table shows where to install which packages of the Splunk Add-on for VMware Metrics in your environment:

Package Component Search head Indexer Scheduler Data Collection Node (DCN)
Splunk Add-on for VMware Metrics Splunk_TA_VMware_inframon x x
SA-Hydra-inframon x x
SA-VMWIndex-inframon x
Splunk_TA_esxilogs x* x*
Splunk_TA_vcenter x* x*

*These packages aren't used in the Content Pack for VMware Dashboards and Reports.

Step 2: Install the content pack

The Splunk App for Content Packs includes the Content Pack for VMware Dashboards and Reports. The content pack contents are automatically installed and running once the Splunk App for Content Packs is installed on the search head where you installed ITSI or IT Essentials Work. Refer to the Splunk App for Content Packs installation instructions to install the Splunk App for content packs in your environment.

Step 3: Enable data model acceleration

The acceleration of the data models "VMwareInventory" is disabled by default. Enable acceleration for this data model to populate the data on dashboards packaged in the Content Pack. An admin can enable data acceleration or change the acceleration period. Complete the following steps on the search head to enable the acceleration of the VMwareInventory data model:

  1. In Splunk Web, go to Settings > Data Models.
  2. From the App list, select IT Essentials Work or IT Service Intelligence (itsi) to see the data models defined and used by the Content Pack for VMware Dashboards and Reports.
  3. Click Edit next to the data model you want to enable acceleration for and select Edit Acceleration.
  4. Check Accelerate.
  5. Select the summary range to specify the acceleration period. The default summary range is 1 month.
  6. Click Save.

Next steps

Splunk Add-on for VMware Metrics collects limited performance metrics and inventory fields with the default configuration. There are additional available metrics and inventory fields that you have to enable to display data in all dashboard panels. Go to Configure Data Collection for Content Pack for VMware Dashboards and Reports for the dashboard metric list and inventory fields and steps to configure additional metrics and fields.

Last modified on 11 October, 2021
PREVIOUS
Release Notes for the Content Pack for VMware Dashboards and Reports
  NEXT
Configure Data Collection for Content Pack for VMware Dashboards and Reports

This documentation applies to the following versions of Splunk® Content Packs for ITSI and IT Essentials Work: current


Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters