All Apps and Add-ons

Questions regarding configuring Splunk Cloud with VMware

New Member

We are planning for a trial with Splunk Cloud for our Virtual infrastructure, VMware. Could you please assist me with the following questions?

  1. Do I still need to configure individual instances of indexer and search head on my on-premise environment even after deployment of Data Collector Nodes?

  2. After configuration of DCN -VMware addon OVA; would that be enough to forward host syslog data?

  3. Are there any other additional instances that need to be configured in order to forward the vcenter and esxi data to Splunk?

I would really appreciate if you could assist me in the right direction.

Nikhil Chhetri

0 Karma

Ultra Champion

hello there,
I suppose you mean you plan to test the Splunk Cloud product, e.g.
in that case, when looking at this diagram from docs on app for VMware,
you will want to change the indexer (on the right) to be a Heavy Forwarder that sends all relevant VMware data to the cloud
the apps that supposed to be on indexer are to be installed on HF and the cloud indexer:
Note, it can be sometimes complex to install the app for VMware, therefore it is recommended in docs to always install it first on a test environment and then scale:
will also suggest to use Splunk Professional Services for the job
hope it helps.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud | Unified Identity - Now Available for Existing Splunk ...

Raise your hand if you’ve already forgotten your username or password when logging into an account. (We can’t ...

Index This | How many sides does a circle have?

February 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Registration for Splunk University is Now Open!

Are you ready for an adventure in learning?   Brace yourselves because Splunk University is back, and it's ...