All Apps and Add-ons

Is the JMS Messaging Modular Input Cluster aware?

rk60422
Explorer

Is the JMS Messaging Modular Input Cluster aware?

In other words, can it be managed from the Deployer server and distributed to multiple search heads in a cluster ?
OR
Does this live on a standalone instance?

The basic question I am asking is, does this support HA / failover?

0 Karma

Damien_Dallimor
Ultra Champion

In a distributed environment, the JMS App should be installed on 1 or more forwarders. The data will then be indexed into your indexer cluster and searchable from your search head cluster.

0 Karma

rk60422
Explorer

Just to be clear, can you configure more that 1 forwarder with the same config?
The way I read the documentation was that the JMS App pulled data from the event source.
If 2 ore more forwarders have the same config, then data would/could be duplicated.

HA is a requirement for my specific use case.

0 Karma

Damien_Dallimor
Ultra Champion

Yes you can if pulling data from JMS queues.Data does not get duplicated because you are dequeing messages (unlike with JMS topics.)

This is a standard approach for achieving horizontal scalability.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Guided Onboarding with Auto-schema Is Now Generally Available

  We are excited to announce the General Availability of Guided Onboarding with Auto-Schematization ...

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...