<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to forward already indexed data after converting Splunk into a Forwarder in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-to-forward-already-indexed-data-after-converting-Splunk-into/m-p/102985#M21626</link>
    <description>&lt;P&gt;Hi wbordeau&lt;/P&gt;

&lt;P&gt;maybe this helps:&lt;BR /&gt;&lt;BR /&gt;
&lt;A href="http://www.splunk.com/wiki/Deploy:Migrating_a_Splunk_Install"&gt;http://www.splunk.com/wiki/Deploy:Migrating_a_Splunk_Install&lt;/A&gt;&lt;BR /&gt;
&lt;A href="http://www.splunk.com/base/Documentation/latest/Admin/Moveanindex"&gt;http://www.splunk.com/base/Documentation/latest/Admin/Moveanindex&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;regards&lt;/P&gt;

&lt;P&gt;addition: your old indexer will only forward new data, the old already indexed data will stay.&lt;/P&gt;</description>
    <pubDate>Tue, 17 May 2011 09:31:48 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2011-05-17T09:31:48Z</dc:date>
    <item>
      <title>How to forward already indexed data after converting Splunk into a Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-forward-already-indexed-data-after-converting-Splunk-into/m-p/102984#M21625</link>
      <description>&lt;P&gt;I configured my original Splunk installation to forward data to newer, faster hardware but noticed only data after this change has been forwarded.  How do I move over all the other data that has been indexed on the original server up to that point?&lt;/P&gt;

&lt;P&gt;Also, how do I configure the original Splunk installation to be a regular forwarder?  I want the Splunk receiver to handle indexing and searching only.&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2011 00:23:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-forward-already-indexed-data-after-converting-Splunk-into/m-p/102984#M21625</guid>
      <dc:creator>wbordeau</dc:creator>
      <dc:date>2011-05-17T00:23:49Z</dc:date>
    </item>
    <item>
      <title>Re: How to forward already indexed data after converting Splunk into a Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-forward-already-indexed-data-after-converting-Splunk-into/m-p/102985#M21626</link>
      <description>&lt;P&gt;Hi wbordeau&lt;/P&gt;

&lt;P&gt;maybe this helps:&lt;BR /&gt;&lt;BR /&gt;
&lt;A href="http://www.splunk.com/wiki/Deploy:Migrating_a_Splunk_Install"&gt;http://www.splunk.com/wiki/Deploy:Migrating_a_Splunk_Install&lt;/A&gt;&lt;BR /&gt;
&lt;A href="http://www.splunk.com/base/Documentation/latest/Admin/Moveanindex"&gt;http://www.splunk.com/base/Documentation/latest/Admin/Moveanindex&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;regards&lt;/P&gt;

&lt;P&gt;addition: your old indexer will only forward new data, the old already indexed data will stay.&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2011 09:31:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-forward-already-indexed-data-after-converting-Splunk-into/m-p/102985#M21626</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2011-05-17T09:31:48Z</dc:date>
    </item>
  </channel>
</rss>

