Dashboards & Visualizations

How to share the same dashboard on several search heads so that changes applied on one SH are reflected on the others?

konstantin_zsen
Path Finder

I have two search head nodes. How can I apply changes on a dashboard of search head 1 to the same dashboard of search head 2? The approach of copying xml-files is not quite satisfied.

Is where way to place dashboard (xml) on a shared storage and use it on all search nodes?

PS
As I understand search head pooling is deprecated as of Splunk Enterprise version 6.2 (see http://docs.splunk.com/Documentation/Splunk/6.3.2/DistSearch/Configuresearchheadpooling) may be I should try search head clustering which can automatically share dashboards?

1 Solution

jplumsdaine22
Influencer

Clustering is the way to go http://docs.splunk.com/Documentation/Splunk/6.3.2/Deploy/Useclusters. If clustering doesn't suit you , you could use a deployment server or even manually deploy apps to each search head using packages or source control. But definately go for clustering if you can, as it will allow changes to ALL knowledge objects to replicate across your searcheads.

View solution in original post

jplumsdaine22
Influencer

Clustering is the way to go http://docs.splunk.com/Documentation/Splunk/6.3.2/Deploy/Useclusters. If clustering doesn't suit you , you could use a deployment server or even manually deploy apps to each search head using packages or source control. But definately go for clustering if you can, as it will allow changes to ALL knowledge objects to replicate across your searcheads.

konstantin_zsen
Path Finder

jplumsdaine22 thanks for you answer.
It was nice to get a quick reply.

I would prefer search head cluster but this one require 3 nodes as minimum. Unfortunately I have so far only two nodes.
If I choose search head cluster should I install additional node?

0 Karma

masonmorales
Influencer

Yes, you should install an additional node to create the search head cluster.

0 Karma

jplumsdaine22
Influencer

Yep you need a minimum of three nodes

0 Karma

konstantin_zsen
Path Finder

Thanks, gays!
Very pleased that in the community there are professionals always ready to help.

Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...