<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Tuning for performance in Monitoring Splunk</title>
    <link>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376914#M5825</link>
    <description>&lt;P&gt;While the Splunk documentation serves us well, I am interested in finding a resource for studying about performance.  I have not been successful in locating commercial documentation.  Thank you.&lt;/P&gt;</description>
    <pubDate>Thu, 26 Jul 2018 20:56:00 GMT</pubDate>
    <dc:creator>halbeisendv</dc:creator>
    <dc:date>2018-07-26T20:56:00Z</dc:date>
    <item>
      <title>Tuning for performance</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376914#M5825</link>
      <description>&lt;P&gt;While the Splunk documentation serves us well, I am interested in finding a resource for studying about performance.  I have not been successful in locating commercial documentation.  Thank you.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 20:56:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376914#M5825</guid>
      <dc:creator>halbeisendv</dc:creator>
      <dc:date>2018-07-26T20:56:00Z</dc:date>
    </item>
    <item>
      <title>Re: Tuning for performance</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376915#M5826</link>
      <description>&lt;P&gt;Here are a few good resources:&lt;BR /&gt;
&lt;A href="https://conf.splunk.com/files/2016/slides/architecting-splunk-for-epic-performance-at-blizzard-entertainment.pdf"&gt;https://conf.splunk.com/files/2016/slides/architecting-splunk-for-epic-performance-at-blizzard-entertainment.pdf&lt;/A&gt;&lt;BR /&gt;
&lt;A href="https://conf.splunk.com/files/2017/slides/splunk-enterprise-security-health-check.pdf"&gt;https://conf.splunk.com/files/2017/slides/splunk-enterprise-security-health-check.pdf&lt;/A&gt;&lt;BR /&gt;
&lt;A href="https://www.rfaircloth.com/2017/12/12/tuning-splunk-when-max-concurrent-searches-are-reached/"&gt;https://www.rfaircloth.com/2017/12/12/tuning-splunk-when-max-concurrent-searches-are-reached/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 21:56:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376915#M5826</guid>
      <dc:creator>masonmorales</dc:creator>
      <dc:date>2018-07-26T21:56:17Z</dc:date>
    </item>
    <item>
      <title>Re: Tuning for performance</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376916#M5827</link>
      <description>&lt;P&gt;I published a conf talk related to this topic, my talk was more around the "Things I wish I knew then" wiki articles:&lt;BR /&gt;
&lt;A href="http://conf.splunk.com/files/2017/slides/howd-you-get-so-big-tips-tricks-for-growing-your-splunk-deployment-from-50-gb-day-to-1-tb-day.pdf"&gt;How’d You Get So Big? Tips &amp;amp; Tricks for Growing Your Splunk Deployment from 50 GB/Day to 1 TB/Day&lt;/A&gt; or &lt;A href="http://conf.splunk.com/files/2017/recordings/howd-you-get-so-big-tips-n-tricks-for-growing-your-splunk-deployment-from-50-gb-per-day-to-1-tb-per-day.mp4"&gt;recording here&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;In addition these other talks were excellent resources in addition to the above post:&lt;BR /&gt;
&lt;A href="https://conf.splunk.com/files/2016/slides/jiffy-lube-quick-tune-up-for-your-splunk-environment.pdf"&gt;The Jiffy Lube Quick Tune-­‐up For Your Splunk Environment&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Also refer to the 2017 conf presentations around &lt;A href="http://conf.splunk.com/sessions/2017-sessions.html#roles=Administrator&amp;amp;roles=Architect&amp;amp;ptopics=Splunk%20Administration%20%26%20Scaling&amp;amp;"&gt;Splunk internals and scaling&lt;/A&gt;, in particular talks like Worst Practices...and How to Fix Them, the talks on Indexer scaling or 5 million buckets and beyond et cetera, there are many useful talks or documentation around this.&lt;/P&gt;

&lt;P&gt;This is all in addition to the &lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Capacity/IntroductiontocapacityplanningforSplunkEnterprise"&gt;capacity planning manual&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 23:00:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376916#M5827</guid>
      <dc:creator>gjanders</dc:creator>
      <dc:date>2018-07-26T23:00:19Z</dc:date>
    </item>
    <item>
      <title>Re: Tuning for performance</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376917#M5828</link>
      <description>&lt;P&gt;A great deal of information in this thread; will be working threw it over the next several weeks.  Thanks so much. &lt;/P&gt;</description>
      <pubDate>Tue, 21 Aug 2018 15:15:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Tuning-for-performance/m-p/376917#M5828</guid>
      <dc:creator>halbeisendv</dc:creator>
      <dc:date>2018-08-21T15:15:55Z</dc:date>
    </item>
  </channel>
</rss>

