<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Deployment in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264508#M10065</link>
    <description>&lt;P&gt;To integrate the other indexer in the search head you have only to insert it in the search peers list of each search head.&lt;BR /&gt;
if you want to insert it also in the indexer cluster you have to follow the related procedure you already used for the other indexers.&lt;BR /&gt;
remember that the old logs cannot be replicated.&lt;BR /&gt;
bye.&lt;BR /&gt;
Giuseppe&lt;/P&gt;</description>
    <pubDate>Fri, 02 Sep 2016 11:06:39 GMT</pubDate>
    <dc:creator>gcusello</dc:creator>
    <dc:date>2016-09-02T11:06:39Z</dc:date>
    <item>
      <title>Splunk Deployment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264507#M10064</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;

&lt;P&gt;We are deploying Splunk in our environment and have been stuck up at a point.&lt;/P&gt;

&lt;P&gt;We have deployed Indexer cluster in one network it consist of the following details &lt;BR /&gt;
2 search head &lt;BR /&gt;
4 indexer&lt;BR /&gt;
Master node&lt;BR /&gt;
Deployment server&lt;/P&gt;

&lt;P&gt;Now our requirement is that we want to integrate one indexer present at a  different site and network with the search head of the current cluster.&lt;/P&gt;

&lt;P&gt;Is it possible and if so how can it be done ?&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 06:47:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264507#M10064</guid>
      <dc:creator>himapate</dc:creator>
      <dc:date>2016-09-02T06:47:33Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Deployment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264508#M10065</link>
      <description>&lt;P&gt;To integrate the other indexer in the search head you have only to insert it in the search peers list of each search head.&lt;BR /&gt;
if you want to insert it also in the indexer cluster you have to follow the related procedure you already used for the other indexers.&lt;BR /&gt;
remember that the old logs cannot be replicated.&lt;BR /&gt;
bye.&lt;BR /&gt;
Giuseppe&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 11:06:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264508#M10065</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2016-09-02T11:06:39Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Deployment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264509#M10066</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;

&lt;P&gt;Thanks for your response, the solution provided seems to be helpful.However had a doubt regarding the license.&lt;BR /&gt;
The separate indexer has its own license and my cluster has a different license would that seem to be clashing or would be working respectively.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 11:28:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264509#M10066</guid>
      <dc:creator>himapate</dc:creator>
      <dc:date>2016-09-02T11:28:48Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Deployment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264510#M10067</link>
      <description>&lt;P&gt;Every Indexer uses own license, There aren't restrictions for the Search Heads.&lt;BR /&gt;
In this way you can search logs from the same Search Heads  both on the cluster and the separate Indexer.&lt;BR /&gt;
Bye.&lt;BR /&gt;
Giuseppe&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 12:35:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-Deployment/m-p/264510#M10067</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2016-09-02T12:35:59Z</dc:date>
    </item>
  </channel>
</rss>

