Hi
My new installation of Splunk app for Exchange in a distributed environment does not find data.
if i do a manual search = index=msexchange eventtype="msexchange-mailbox-usage" i do get results, so the data is there on the indexers.
but the Panels in the app just search for the eventtype, without specifying the index, and with that, no data is shown.
What have i missed in the installation guide?
↧