<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Search Head Pooling on Multiple Clusters in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/Search-Head-Pooling-on-Multiple-Clusters/m-p/120281#M4559</link>
    <description>&lt;P&gt;I have 2 clusters located at different sites. Each cluster has a search head, a master and 2 peer nodes. I have added the masters of both the clusters to both the search heads. As a result, I can access data from all 4 peer nodes from each search head.&lt;BR /&gt;
I would like to enable search head pooling such that the 2 search heads are replicas of each other. I'll also be introducing a load balancer to distribute the load across the two search heads. However, if a user creates a report when he is connected to 1 of the search heads, where would the report be stores? Also, the next time the user logs in, the load balancer might direct him to the other search head? Would the report be accessible from this search head? Would copying all apps and user data to a shared location overcome this issue?&lt;/P&gt;</description>
    <pubDate>Tue, 11 Nov 2014 00:47:25 GMT</pubDate>
    <dc:creator>nivedita_viswan</dc:creator>
    <dc:date>2014-11-11T00:47:25Z</dc:date>
    <item>
      <title>Search Head Pooling on Multiple Clusters</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Search-Head-Pooling-on-Multiple-Clusters/m-p/120281#M4559</link>
      <description>&lt;P&gt;I have 2 clusters located at different sites. Each cluster has a search head, a master and 2 peer nodes. I have added the masters of both the clusters to both the search heads. As a result, I can access data from all 4 peer nodes from each search head.&lt;BR /&gt;
I would like to enable search head pooling such that the 2 search heads are replicas of each other. I'll also be introducing a load balancer to distribute the load across the two search heads. However, if a user creates a report when he is connected to 1 of the search heads, where would the report be stores? Also, the next time the user logs in, the load balancer might direct him to the other search head? Would the report be accessible from this search head? Would copying all apps and user data to a shared location overcome this issue?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2014 00:47:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Search-Head-Pooling-on-Multiple-Clusters/m-p/120281#M4559</guid>
      <dc:creator>nivedita_viswan</dc:creator>
      <dc:date>2014-11-11T00:47:25Z</dc:date>
    </item>
    <item>
      <title>Re: Search Head Pooling on Multiple Clusters</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Search-Head-Pooling-on-Multiple-Clusters/m-p/120282#M4560</link>
      <description>&lt;P&gt;In short, Search Head pooling does make stuff available. Please see &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/Configuresearchheadpooling"&gt;http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/Configuresearchheadpooling&lt;/A&gt;. &lt;BR /&gt;
Splunk recommends NFS for knowledge bundles.&lt;/P&gt;

&lt;P&gt;With v6.2, there's a whole new game &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/AboutSHC"&gt;http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/AboutSHC&lt;/A&gt;. Hope this helps&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2014 01:35:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Search-Head-Pooling-on-Multiple-Clusters/m-p/120282#M4560</guid>
      <dc:creator>Raghav2384</dc:creator>
      <dc:date>2014-11-11T01:35:13Z</dc:date>
    </item>
  </channel>
</rss>

