<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Data flow  Diagram in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Splunk-Data-flow-Diagram/m-p/78483#M181641</link>
    <description>&lt;P&gt;I don't know that you need a diagram. There isn't that much. Forwarders send to the splunktcp port on the destination (which may be another forwarder, but that is dependent on your designed architecture), which is arbitrary, but conventionally we use 9997. And search heads talk to the splunkd port, which is by default on port 8089.&lt;/P&gt;

&lt;P&gt;That's it for data flow. If you need more information, you should probably look at the appropriate sections of the documentation, &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Distributedoverview"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Distributedoverview&lt;/A&gt; and &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Indexer/Aboutindexesandindexers"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Indexer/Aboutindexesandindexers&lt;/A&gt; are probably most relevant.&lt;/P&gt;</description>
    <pubDate>Thu, 28 Mar 2013 21:23:03 GMT</pubDate>
    <dc:creator>gkanapathy</dc:creator>
    <dc:date>2013-03-28T21:23:03Z</dc:date>
    <item>
      <title>Splunk Data flow  Diagram</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Splunk-Data-flow-Diagram/m-p/78482#M181640</link>
      <description>&lt;P&gt;Can some one guide us or provoide us with the splunk data flow diagram &lt;/P&gt;

&lt;P&gt;with all the port number services etc &lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2013 19:47:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Splunk-Data-flow-Diagram/m-p/78482#M181640</guid>
      <dc:creator>allamiro</dc:creator>
      <dc:date>2013-03-28T19:47:06Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Data flow  Diagram</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Splunk-Data-flow-Diagram/m-p/78483#M181641</link>
      <description>&lt;P&gt;I don't know that you need a diagram. There isn't that much. Forwarders send to the splunktcp port on the destination (which may be another forwarder, but that is dependent on your designed architecture), which is arbitrary, but conventionally we use 9997. And search heads talk to the splunkd port, which is by default on port 8089.&lt;/P&gt;

&lt;P&gt;That's it for data flow. If you need more information, you should probably look at the appropriate sections of the documentation, &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Distributedoverview"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Distributedoverview&lt;/A&gt; and &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Indexer/Aboutindexesandindexers"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Indexer/Aboutindexesandindexers&lt;/A&gt; are probably most relevant.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2013 21:23:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Splunk-Data-flow-Diagram/m-p/78483#M181641</guid>
      <dc:creator>gkanapathy</dc:creator>
      <dc:date>2013-03-28T21:23:03Z</dc:date>
    </item>
  </channel>
</rss>

