All Apps and Add-ons

Splunk App for AWS & Splunk Add-On for AWS in a Clustered/Distributed deployment.

aknsun
Path Finder

Hi,

There have been a few questions on this before, with some conflicting views on deploying the Splunk Add-On for AWS in a clustered/distributed environment,

  1. The Splunk App for AWS is installed on the Search Heads. No doubts here.
  2. The Splunk Add-On for AWS: If this is being installed and configured on a Heavy Forwarder, is there a need for the Add-On to be installed(but not configured) on the Search Heads? Some posts state that it's only required in one place ie Heavy Forwarder, while others points to it being required on the Search Head as well (for search time logic, field extractions etc), in addition to it being configured on the Heavy Forwarder . (https://answers.splunk.com/answers/213687/where-in-our-splunk-environment-do-we-install-the.html). Can someone who has this deployed and working confirm?

Thanks,

AKN

Tags (1)
0 Karma

aknsun
Path Finder

Hope someone who has got this working can confirm.

Thanks.

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...