<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Add-on for Unix and Linux in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388170#M47337</link>
    <description>&lt;P&gt;I am not sure I understand your question. If you don't understand the basic tiers of a Splunk deployment and what the function of each of them is (forwarder, indexer, search head), then you should learn that before you try to install an add-on, especially in a distributed deployment.&lt;/P&gt;

&lt;P&gt;You have to install the add-on onto your indexers that are receiving data from your Linux hosts.&lt;/P&gt;

&lt;P&gt;You have to install the add-on onto your search heads so you can search the indexed data.&lt;/P&gt;

&lt;P&gt;You have to install a universal forwarder and the add-on onto each of your Linux hosts, so they can send the data to the indexer.&lt;/P&gt;</description>
    <pubDate>Tue, 19 Jun 2018 22:48:07 GMT</pubDate>
    <dc:creator>ChrisG</dc:creator>
    <dc:date>2018-06-19T22:48:07Z</dc:date>
    <item>
      <title>Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388167#M47334</link>
      <description>&lt;P&gt;Hello , we have indexer clustering setup. We need to implement Splunk Add-on for Unix and Linux to monitors hosts. How we can do.&lt;BR /&gt;
in this case.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jun 2018 16:20:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388167#M47334</guid>
      <dc:creator>lmjoin</dc:creator>
      <dc:date>2018-06-19T16:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388168#M47335</link>
      <description>&lt;P&gt;See the general instructions to  &lt;A href="http://docs.splunk.com/Documentation/AddOns/released/Overview/Distributedinstall#Indexer_clusters"&gt;Install an add-on in a distributed environment&lt;/A&gt; in the &lt;EM&gt;Splunk Add-ons&lt;/EM&gt; manual. There is also some additional information in &lt;A href="http://docs.splunk.com/Documentation/UnixAddOn/5.2.4/User/DeploytheSplunkAdd-onforUnixandLinuxinadistributedSplunkenvironment"&gt;Deploy the Splunk Add-on for Unix and Linux in a distributed environment&lt;/A&gt; in &lt;EM&gt;Deploy and Use the Splunk Add-on for Unix and Linux&lt;/EM&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jun 2018 17:24:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388168#M47335</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2018-06-19T17:24:54Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388169#M47336</link>
      <description>&lt;P&gt;Thanks for reply , i have read this and confusion in mind , here need data from hosts only  , not from indexer and search head , but in that case i have to  install app on both indexer and search head ?. can it have some logic ?&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jun 2018 18:06:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388169#M47336</guid>
      <dc:creator>lmjoin</dc:creator>
      <dc:date>2018-06-19T18:06:40Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388170#M47337</link>
      <description>&lt;P&gt;I am not sure I understand your question. If you don't understand the basic tiers of a Splunk deployment and what the function of each of them is (forwarder, indexer, search head), then you should learn that before you try to install an add-on, especially in a distributed deployment.&lt;/P&gt;

&lt;P&gt;You have to install the add-on onto your indexers that are receiving data from your Linux hosts.&lt;/P&gt;

&lt;P&gt;You have to install the add-on onto your search heads so you can search the indexed data.&lt;/P&gt;

&lt;P&gt;You have to install a universal forwarder and the add-on onto each of your Linux hosts, so they can send the data to the indexer.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jun 2018 22:48:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388170#M47337</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2018-06-19T22:48:07Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388171#M47338</link>
      <description>&lt;P&gt;Thanks&lt;BR /&gt;
i have put app under master indexer and push and updated and install on SH , add on forwarder but while configuring it require remote server URL , is it for master or any one &lt;/P&gt;</description>
      <pubDate>Thu, 21 Jun 2018 16:15:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388171#M47338</guid>
      <dc:creator>lmjoin</dc:creator>
      <dc:date>2018-06-21T16:15:27Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388172#M47339</link>
      <description>&lt;P&gt;we need to install on which from we need data add on and on indexer and search head we need app.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Jul 2018 16:24:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388172#M47339</guid>
      <dc:creator>lmjoin</dc:creator>
      <dc:date>2018-07-03T16:24:08Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388173#M47340</link>
      <description>&lt;P&gt;we need to install add on on which from we need data  and ,  on indexer and search head we need app.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Jul 2018 16:24:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388173#M47340</guid>
      <dc:creator>lmjoin</dc:creator>
      <dc:date>2018-07-03T16:24:34Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for Unix and Linux</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388174#M47341</link>
      <description>&lt;P&gt;I'm also having trouble following the question here. Specifically, I can't imagine where "remote server URL" came into play. If you can be super specific and show us what step of what page in the instructions you are running into a challenge then I'm sure we can help.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Jan 2019 17:36:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-Unix-and-Linux/m-p/388174#M47341</guid>
      <dc:creator>sloshburch</dc:creator>
      <dc:date>2019-01-03T17:36:19Z</dc:date>
    </item>
  </channel>
</rss>

