Dear Users,
Need some insights here to solve the issue with consolidating logs into one instance.
I have multiple splunk instances hosted into different servers and the distributed application logs the respective data into these servers. Now, i would like to get all these logs from different splunk instances to one single instance so that i can have end to end monitoring established and generate report/dashboard.
Thanks @manjunathmeti for your response. i will try your recommendation.
hi @vinforever,
You can configure a centralized Search head to search the data across multiple indexer servers or indexer clusters. Check below links to configure:
https://docs.splunk.com/Documentation/Splunk/8.1.3/DistSearch/Configuredistributedsearch
If this reply helps you, a like would be appreciated.