<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42690#M1209</link>
    <description>&lt;P&gt;Mag2sub, you may want to look at 6.0 as some of these limitations have been addressed.&lt;/P&gt;</description>
    <pubDate>Fri, 04 Oct 2013 18:31:45 GMT</pubDate>
    <dc:creator>jkerai</dc:creator>
    <dc:date>2013-10-04T18:31:45Z</dc:date>
    <item>
      <title>deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42687#M1206</link>
      <description>&lt;P&gt;Looking to leverage Index replication but still unsure on how to deploy apps with views,search time apps to participating indexers?,search heads&lt;/P&gt;

&lt;P&gt;online documentation suggestes there are some limitation for Cluster apps in sense tknowledge bundel dont support search time artifacts ....so how does one  actually achieve search time apps in Clustered environments..confused ...and appreciate pointers as i may be amiss on the caveats of CLuster apps ?&lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2013 22:28:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42687#M1206</guid>
      <dc:creator>Mag2sub</dc:creator>
      <dc:date>2013-08-21T22:28:10Z</dc:date>
    </item>
    <item>
      <title>Re: deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42688#M1207</link>
      <description>&lt;P&gt;It depends on the app. Some of them will have to be installed in search head only. Others will have components that go on search pears and search head. &lt;/P&gt;

&lt;P&gt;I thought it was going to be an issue but it really isn't. I guess it can be inconvenient that on search pears you can use the bundle but the search head will need to be a manual install.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2013 01:12:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42688#M1207</guid>
      <dc:creator>adrianathome</dc:creator>
      <dc:date>2013-08-22T01:12:26Z</dc:date>
    </item>
    <item>
      <title>Re: deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42689#M1208</link>
      <description>&lt;P&gt;And there is not any way to make the search head a deployment client ?...it has to be manual only ?&lt;/P&gt;

&lt;P&gt;I also did read up that Splunk also does not recommend any config management tool like puppet etc to be used to update cluster config ?...&lt;/P&gt;

&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2013 02:14:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42689#M1208</guid>
      <dc:creator>Mag2sub</dc:creator>
      <dc:date>2013-08-22T02:14:38Z</dc:date>
    </item>
    <item>
      <title>Re: deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42690#M1209</link>
      <description>&lt;P&gt;Mag2sub, you may want to look at 6.0 as some of these limitations have been addressed.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2013 18:31:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42690#M1209</guid>
      <dc:creator>jkerai</dc:creator>
      <dc:date>2013-10-04T18:31:45Z</dc:date>
    </item>
    <item>
      <title>Re: deploying Dashboard apps, search apps(search phase) etc in Clustered envrionment</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42691#M1210</link>
      <description>&lt;P&gt;I am going to glom onto this post and try to get better details then "depends" to the question.  I understand that all outliers depend.. but lets keep this simple. &lt;/P&gt;

&lt;P&gt;*NIX app   How do you do deployment  across a cluster designed NSPOF: &lt;BR /&gt;
4 x Indexer&lt;BR /&gt;
1 x Cluster mater&lt;BR /&gt;
1 x Deployer / license server&lt;BR /&gt;
3 x Search nodes in SH Cluster (VIP for HA)&lt;BR /&gt;
2 x Heavy forwarders collecting syslog /snmp / json  (VIP for HA on inbound)&lt;/P&gt;

&lt;P&gt;I did read &lt;BR /&gt;
Documentation:&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.2.5/DistSearch/HowconfigurationworksinSHC" target="_blank"&gt;http://docs.splunk.com/Documentation/Splunk/6.2.5/DistSearch/HowconfigurationworksinSHC&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Design for file location:&lt;BR /&gt;
splunkcmaster01  -&amp;gt; /opt/splunk/etc/masterapps/   (used for index node component deployment)&lt;BR /&gt;
splunkdeploy01  -&amp;gt; /opt/splunk/etc/shcluster/apps/ (used for Search Head Cluster Nodes)&lt;BR /&gt;
                               -&amp;gt; /opt/splunk/etc/deployment.apps/  (Forwarders)&lt;/P&gt;

&lt;P&gt;Example:  *NIX app  deployment (via best practice)&lt;/P&gt;

&lt;P&gt;Step 1:   Download  splunk-app-for-unix-and-linux_503.tgz  onto splunkdeploy01&lt;BR /&gt;
Step 2:  copy files from within tarball out to different splunk directories &lt;/P&gt;

&lt;P&gt;[root@splunkdeploy01 /]# cd /tmp/&lt;BR /&gt;
[root@splunkdeploy01 tmp]# cp /media/labfiles/Software/Splunk/apps/splunk-app-for-unix-and-linux_503.tgz .&lt;BR /&gt;
[root@splunkdeploy01 tmp]# tar -zxvf splunk-app-for-unix-and-linux_503.tgz&lt;BR /&gt;
[root@splunkdeploy01 tmp]# cd splunk_app_for_nix/&lt;BR /&gt;
??  &amp;lt; missing explaination of what dir / files goes where.  I think /SA-nix   goes in one folder and /TA_nix goes in another folder   but also some parts go onto search head. &amp;gt; ??&lt;BR /&gt;
[root@splunkdeploy01 /]# ls /tmp/splunk_app_for_nix/install/&lt;BR /&gt;
SA-nix  Splunk_TA_nix&lt;/P&gt;

&lt;P&gt;Question:&lt;BR /&gt;
1) README.txt within app has no info to guide on this procedure.   And docs website does not speak to cluster type deployment.  Is there a guide for or youtube for how this is done?&lt;/P&gt;

&lt;P&gt;Once I get the answer for this I can post this..  and as I crawl through other apps deploy on cluster.. I can post that. (example DB connect ,  Exchange, VWare etc..  which say a lot of "deploy like standalone" but peices to the process are missing... or I am missing the "Very F*ine* Manual"&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 07:21:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/deploying-Dashboard-apps-search-apps-search-phase-etc-in/m-p/42691#M1210</guid>
      <dc:creator>JeremeyWise</dc:creator>
      <dc:date>2020-09-29T07:21:33Z</dc:date>
    </item>
  </channel>
</rss>

