how do i setup my indexer with Splunk aws add on from config files, our indexers doesn't have web. UI.
The question is how do I update Secret Key and Access Key from the backend within the indexers /opt/splunk/etc/slave-app/Splunk_TA_aws/?
is there any file which i need to update?
Hi
as you can check here Distributed deployments you cannot install & configure input part on indexer cluster! You must setup separate HF (heavy forwarder) to do input part. Indexer cluster needs mainly index definition part when you are using HF to get data in.
r. Ismo