<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DB Connect in a distributed environment in Splunk Dev</title>
    <link>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19565#M137</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;we've just released DB Connect 1.1, which can now be installed on a search head pool.&lt;/P&gt;

&lt;P&gt;&lt;A href="http://apps.splunk.com/app/958"&gt;app&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/DBX/latest/DeployDBX/Setupsearchheadpooling"&gt;search head pooling docs&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;The Heavy Forwarder route works too.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Jack&lt;/P&gt;</description>
    <pubDate>Wed, 11 Sep 2013 16:45:45 GMT</pubDate>
    <dc:creator>jcoates_splunk</dc:creator>
    <dc:date>2013-09-11T16:45:45Z</dc:date>
    <item>
      <title>DB Connect in a distributed environment</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19564#M136</link>
      <description>&lt;P&gt;In our environment we have the Search Heads, Forwarders and Indexers. Our indexers are using networked round robin DNS name to index events from the forwarders. We need to start getting events from our databases using the tail-"ing" method for which DB connect is good for. (Can't get it to work consistently) However it is unclear (in the docs) where to install DB connect either on the Search Head or Indexer? If we have pairs of indexers in our DNS indexer name linked, then we get events from sources on both indexers (however not duplicate events).&lt;/P&gt;

&lt;P&gt;My guess is if i wanted to index database event lookups using Splunk DB connect, then I would install and setup DB connect on indexer A of B, however put an index name dbEvents on both paired indexers A and B?&lt;/P&gt;

&lt;P&gt;Or Place the DB Connect on a search head and create an index name dbEvents on my grouped indexers?&lt;/P&gt;

&lt;P&gt;Or should we install DB connect on the search head or forwarders?&lt;/P&gt;

&lt;P&gt;Any insight is greatly appreciated.&lt;/P&gt;

&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2013 20:22:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19564#M136</guid>
      <dc:creator>ngcgoon</dc:creator>
      <dc:date>2013-04-29T20:22:00Z</dc:date>
    </item>
    <item>
      <title>Re: DB Connect in a distributed environment</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19565#M137</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;we've just released DB Connect 1.1, which can now be installed on a search head pool.&lt;/P&gt;

&lt;P&gt;&lt;A href="http://apps.splunk.com/app/958"&gt;app&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/DBX/latest/DeployDBX/Setupsearchheadpooling"&gt;search head pooling docs&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;The Heavy Forwarder route works too.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Jack&lt;/P&gt;</description>
      <pubDate>Wed, 11 Sep 2013 16:45:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19565#M137</guid>
      <dc:creator>jcoates_splunk</dc:creator>
      <dc:date>2013-09-11T16:45:45Z</dc:date>
    </item>
    <item>
      <title>Re: DB Connect in a distributed environment</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19566#M138</link>
      <description>&lt;P&gt;Do we have to install App on search head also to query the data? We are using Search head clustering and it is mentioned in doc to go through Heavy Forwarder route as it is not supported with SH clustering.&lt;BR /&gt;
How I can query the data using HF route?&lt;/P&gt;

&lt;P&gt;Thanks&lt;BR /&gt;
Hemendra&lt;/P&gt;</description>
      <pubDate>Mon, 11 Apr 2016 06:37:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/DB-Connect-in-a-distributed-environment/m-p/19566#M138</guid>
      <dc:creator>hemendralodhi</dc:creator>
      <dc:date>2016-04-11T06:37:33Z</dc:date>
    </item>
  </channel>
</rss>

