All Apps and Add-ons

JMX add-on installation on which splunk components?

tweaktubbie
Communicator

"In a distributed deployment, install the Splunk Add-on for Java Management Extensions to your search heads, indexers, and heavy forwarders.

This add-on does not support universal forwarders because the add-on requires Python.

Note: You cannot use a deployment server to deploy the configured add-on to forwarders because the add-on uses modular inputs to collect data remotely. Using a deployment server to deploy configured add-ons to multiple forwarders results in duplicate data collection" (LINK)

Wondering why I'd need to put it on the indexers? Or even on the search heads, assuming I configure the app from the HF webconsole. And make own alerts or views, not some included in an app or add-on?

rpille_splunk
Splunk Employee
Splunk Employee

Hi tweaktubbie,

You do not need to install the JMX add-on to indexers if you do not want to, as long as you are using a Heavy Forwarder to do the data collection. However, it will not do any harm to have it there.

You DO need to install the JMX add-on to your search heads to take advantage of all the search time knowledge, such as CIM mapping.

I'll correct the docs to clarify that installing on indexers is not strictly necessary. Thanks!

0 Karma

sandeepduppalli
Explorer

We have a Tomcat running and to collect JMX logs is it mandatory to have Heavy forwarder installed.?I know we cannot install JMX add-on for UF. Is there any alternative method other than having HF installed.?and catalina,localhost,and manager logs can be collected through UF right.?correct me if I am wrong

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...