<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: splunk cloud in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527432#M18174</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/217711"&gt;@trojan_81&lt;/a&gt;&amp;nbsp;.. For future questioners, let me post this as a reference:&lt;/P&gt;&lt;P&gt;1. OnSplunk Docs page, tab 4 is the "Deploy", which gives lots of ideas for splunk design and deployment architectures&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;2. Splunk training provides these 4 free courses -&amp;nbsp;&lt;/P&gt;&lt;UL class="l2-list collapse in"&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html" target="_blank" rel="noopener"&gt;Free Splunk Fundamentals 1&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-infastructure-overview.html" target="_blank" rel="noopener"&gt;Splunk Infrastructure Overview&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/user-behavior-analytics.html" target="_blank" rel="noopener"&gt;Splunk User Behavior Analytics&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/signalfx-fundamentals-series.html" target="_blank" rel="noopener"&gt;SignalFx Fundamentals Series (eLearning)&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/overview.html" target="_blank" rel="noopener"&gt;https://www.splunk.com/en_us/training/free-courses/overview.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Happy Splunking | Best Regards | Sekar | PS - Karma points appreciated!&lt;/P&gt;</description>
    <pubDate>Sat, 31 Oct 2020 23:46:59 GMT</pubDate>
    <dc:creator>inventsekar</dc:creator>
    <dc:date>2020-10-31T23:46:59Z</dc:date>
    <item>
      <title>splunk cloud</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527385#M18166</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;My organization is using splunk cloud.&amp;nbsp; I log into splunk cloud to run searches and also access the enterprise security app from there as well.&lt;/P&gt;&lt;P&gt;Given the above statement, are the below statements correct?&lt;/P&gt;&lt;P&gt;1. Splunk cloud is doing these roles:&amp;nbsp; indexer and search head&lt;/P&gt;&lt;P&gt;2. Splunk cloud is the same thing as splunk enterprise&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Oct 2020 23:10:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527385#M18166</guid>
      <dc:creator>trojan_81</dc:creator>
      <dc:date>2020-10-30T23:10:10Z</dc:date>
    </item>
    <item>
      <title>Re: splunk cloud</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527398#M18170</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/217711"&gt;@trojan_81&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;about your assertions:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1. Splunk cloud is doing these roles:&amp;nbsp; indexer and search head&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Splunk roleas are always the same, but you don't see Indexers, only Search Heads; Indexers are used but they are outside of your control.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2. Splunk cloud is the same thing as splunk enterprise&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;If you're speaking of features, Splunk Cloud and Splunk Enterprise are more or less aligned.&lt;/P&gt;&lt;P&gt;if you're speaking of architecture, they are only a few different:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;you don't access Indexers, only Search Heads,&lt;/LI&gt;&lt;LI&gt;for Splunk Cloud is a best practice to use at least two Heavy Forwarders as concentrators between your targets and Splunk, for Splunk Enterprise you don't need them.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;In both cases, you need a Deployment Server and Universal Forwarders.&lt;/P&gt;&lt;P&gt;If you're speaking of data retention, in Splunk Cloud you have to deeply analyze your requirements because there are limitis in retention,&amp;nbsp;instead in Splunk Enterprise retention depends only on available storage.&lt;/P&gt;&lt;P&gt;At least, if you're speaking of management, in Splunk Cloud you have an Indexer Cluster and a search Head Cluster that you don't need to manage and maintain and you haven't problems of resources and performaces, otherwise, in Splunk Enterprise you have to design, install, configure and maintain them.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sat, 31 Oct 2020 07:19:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527398#M18170</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2020-10-31T07:19:30Z</dc:date>
    </item>
    <item>
      <title>Re: splunk cloud</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527428#M18172</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/217711"&gt;@trojan_81&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;good for you.&lt;/P&gt;&lt;P&gt;Ciao and happy splunking.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 31 Oct 2020 17:53:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527428#M18172</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2020-10-31T17:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: splunk cloud</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527432#M18174</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/217711"&gt;@trojan_81&lt;/a&gt;&amp;nbsp;.. For future questioners, let me post this as a reference:&lt;/P&gt;&lt;P&gt;1. OnSplunk Docs page, tab 4 is the "Deploy", which gives lots of ideas for splunk design and deployment architectures&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;2. Splunk training provides these 4 free courses -&amp;nbsp;&lt;/P&gt;&lt;UL class="l2-list collapse in"&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html" target="_blank" rel="noopener"&gt;Free Splunk Fundamentals 1&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-infastructure-overview.html" target="_blank" rel="noopener"&gt;Splunk Infrastructure Overview&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/user-behavior-analytics.html" target="_blank" rel="noopener"&gt;Splunk User Behavior Analytics&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/signalfx-fundamentals-series.html" target="_blank" rel="noopener"&gt;SignalFx Fundamentals Series (eLearning)&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/overview.html" target="_blank" rel="noopener"&gt;https://www.splunk.com/en_us/training/free-courses/overview.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Happy Splunking | Best Regards | Sekar | PS - Karma points appreciated!&lt;/P&gt;</description>
      <pubDate>Sat, 31 Oct 2020 23:46:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/splunk-cloud/m-p/527432#M18174</guid>
      <dc:creator>inventsekar</dc:creator>
      <dc:date>2020-10-31T23:46:59Z</dc:date>
    </item>
  </channel>
</rss>

