Splunk® App for VMware (Legacy)

Installation and Configuration Guide

On August 31, 2022, the Splunk App for VMware will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for VMware Dashboards and Reports.
This documentation does not apply to the most recent version of Splunk® App for VMware (Legacy). For documentation on the most recent version, go to the latest release.

Go to Splunkbase

Download the Solution

You must be logged into Splunkbase to download the Solution components. You will download the Solution and two other 3rd party components required to work with the solution. We recommend that you download all the solution components to a shared folder on your network and then install each component.

If you are unable to download the Solution, email vmware@splunk.com and someone will get in touch with you.

Note for Beta customers

If you have the Beta 2 software version installed and deployed in your environment , you can perform an in-place upgrade. For more information see "Upgrade Instructions" or contact vmware@splunk.com.
If you have a Beta 1 or an earlier release version installed and deployed , you must perform a completely new installation of the 1.0 GA release. See the "Preparation checklist" in the Splunk for VMware Installation and Configuration Guide for instructions.

Download Splunk for VMware

Download Install it on to..
the full suite zip file splunk_app_vmware-1.0.0-127207.zip your Splunk indexers/search heads get the supporting add-ons, domain add-ons, technology add-ons, and apps that make up the Solution.
Splunk Forwarder Virtual Appliance for VMware (splunk_for_vmware_forwarder_virtual_appliance-1.0.0-<build number>.zip.) on a Splunk indexer or a non VMware box with a Splunk forwarder installed A VM created by Splunk distributed as an OVA (open virtual appliance) file. Collects data from ESX/i hosts and vcenter servers.
vcenter add-on zip file Splunk_TA_vcenter-1.0.0-127097.zip Splunk forwarder (UF/HF) running on vCenter machines collect vCenter log data and forward it to the indexer.

Download 3rd party components

Download Install it on to..
5.0 Update 1 release of the vSphere SDK for Perl into the Forwarder Virtual Appliance to access v the vSphere API
Sideview Utils on the search heads where the App is installed to ensure correct display of Dashboards within the App

Download the Splunk components

  1. Download the Splunk universal forwarder or
  2. Download the lightweight forwarder by visiting splunk.com and clicking the Free Download button to download a full version of Splunk. Click on the Splunk version for your target OS to begin the download. You will need to convert it to a lightweight forwarder.

Install the forwarders on your vCenter machines. For more information about installing and configuring forwarders, see "Types of forwarders" and "Introducing the universal forwarder" in the Splunk Distributed Deployment Manual.

Last modified on 12 September, 2012
Credentials.pl   Install UF or LF on each vCenter machine

This documentation applies to the following versions of Splunk® App for VMware (Legacy): 1.0, 1.0.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters