splunk-windows-ta-setup

Community

Render and deploy Windows TA quickly.

Authorchambear2809
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Administrators need to deploy and configure the Splunk Add-on for Microsoft Windows (Splunk_TA_windows) to collect Windows Event Log, Perfmon, and host-monitoring data, while ensuring proper CIM mappings and placement across forwarders, indexers, and search tiers.

Core Features & Use Cases

  • Renders reviewable inputs.conf overlays for WinEventLog (Security/System/Application, Defender, PowerShell), Perfmon, and WinHostMon stanzas.
  • Creates and places the wineventlog and perfmon indexes and enforces forwarder/DE placement (UF/HF/search-tier) for CIM alignment.
  • Provides a guided workflow for installation, index creation, forwarder rollout via splunk-agent-management-setup, and post-deployment validation.

Quick Start

Install the Splunk Windows TA from Splunkbase, render the inputs and overlays, deploy the app to Windows forwarders, and validate CIM readiness.

Dependency Matrix

Required Modules

None required

Components

scripts

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: splunk-windows-ta-setup
Download link: https://github.com/chambear2809/splunk-cisco-skills/archive/main.zip#splunk-windows-ta-setup

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.