Splunk® Add-on for Windows

Deploy and Use the Splunk Add-on for Windows

This documentation does not apply to the most recent version of Splunk® Add-on for Windows. For documentation on the most recent version, go to the latest release.

How this add-on fits into the Splunk picture

The Splunk Add-on for Windows is one of a variety of apps and add-ons available within the Splunk Enterprise ecosystem. All Splunk apps and add-ons run on top of a core Splunk Enterprise installation. You install Splunk Enterprise first, and then install the Splunk Add-on for Windows.

Sample layout

The following diagram depicts an example of the use of the Splunk Add-on for Windows:

TAWin 47x SampleDeployment.png

This diagram shows a typical deployment for the Splunk App for Windows Infrastructure, which uses the Splunk Add-on for Windows heavily. In this diagram, we have highlighted the places where you install the Splunk Add-on for Windows in light blue.

In many cases, the add-on collects Windows information from Windows hosts. In some other cases, such as on the indexer, the add-on provides data models and field extractions for the Splunk App for Windows Infrastructure and other Splunk apps. In others, it combines with other add-ons such as the Splunk Supporting Add-on for Active Directory to provide additional knowledge objects.

Learn more about Splunk and Splunk apps

Last modified on 23 February, 2018
New to Splunk?   How to get support and find more information about Splunk

This documentation applies to the following versions of Splunk® Add-on for Windows: 4.7.0, 4.7.1, 4.7.2, 4.7.3, 4.7.4, 4.7.5, 4.8.0, 4.8.1, 4.8.2, 4.8.3, 4.8.4


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters