Dashboards & Visualizations

How to share the same dashboard on several search heads so that changes applied on one SH are reflected on the others?

konstantin_zsen
Path Finder

I have two search head nodes. How can I apply changes on a dashboard of search head 1 to the same dashboard of search head 2? The approach of copying xml-files is not quite satisfied.

Is where way to place dashboard (xml) on a shared storage and use it on all search nodes?

PS
As I understand search head pooling is deprecated as of Splunk Enterprise version 6.2 (see http://docs.splunk.com/Documentation/Splunk/6.3.2/DistSearch/Configuresearchheadpooling) may be I should try search head clustering which can automatically share dashboards?

1 Solution

jplumsdaine22
Influencer

Clustering is the way to go http://docs.splunk.com/Documentation/Splunk/6.3.2/Deploy/Useclusters. If clustering doesn't suit you , you could use a deployment server or even manually deploy apps to each search head using packages or source control. But definately go for clustering if you can, as it will allow changes to ALL knowledge objects to replicate across your searcheads.

View solution in original post

jplumsdaine22
Influencer

Clustering is the way to go http://docs.splunk.com/Documentation/Splunk/6.3.2/Deploy/Useclusters. If clustering doesn't suit you , you could use a deployment server or even manually deploy apps to each search head using packages or source control. But definately go for clustering if you can, as it will allow changes to ALL knowledge objects to replicate across your searcheads.

konstantin_zsen
Path Finder

jplumsdaine22 thanks for you answer.
It was nice to get a quick reply.

I would prefer search head cluster but this one require 3 nodes as minimum. Unfortunately I have so far only two nodes.
If I choose search head cluster should I install additional node?

0 Karma

masonmorales
Influencer

Yes, you should install an additional node to create the search head cluster.

0 Karma

jplumsdaine22
Influencer

Yep you need a minimum of three nodes

0 Karma

konstantin_zsen
Path Finder

Thanks, gays!
Very pleased that in the community there are professionals always ready to help.

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...

Announcing the 1st Round Champion’s Tribute Winners of the Great Resilience Quest

We are happy to announce the 20 lucky questers who are selected to be the first round of Champion's Tribute ...

We’ve Got Education Validation!

Are you feeling it? All the career-boosting benefits of up-skilling with Splunk? It’s not just a feeling, it's ...