I have inherited what I believe to be an incomplete deployment of Splunk that I need to get my arms around. I am new to Splunk at the enterprise level. I believe the deployment is incomplete in that I am unable to search from the search heads against indexes in the Index servers.
I have 12 servers labeled as indexers, search heads, masters, and dist manager. Is there any one point where I can see all of the servers configured to communicate in this architecture for discovery and enumeration purposes of is this a manual process (log into each one)?
Thanks in advance
You should be able to see your environment details from Distributed Management Console in Splunk. See this for more details
http://docs.splunk.com/Documentation/Splunk/6.2.6/Admin/ConfiguretheMonitoringConsole
The application S.O.S can also help if above is not available. https://splunkbase.splunk.com/app/748/
Thanks... turns out the architecture was not precisely as documented. The DMC helped clear the mystery.
You should be able to see your environment details from Distributed Management Console in Splunk. See this for more details
http://docs.splunk.com/Documentation/Splunk/6.2.6/Admin/ConfiguretheMonitoringConsole
The application S.O.S can also help if above is not available. https://splunkbase.splunk.com/app/748/