Deployment Architecture

How to configure search head and indexers in a Unix environment?

abhishekdharga
Engager

Hi All,

I need to configure the one Splunk server as Search head and another 2 standalone machines as indexers in distributed environment.
Can some one guide me how I can do that.
I already installed the Splunk enterprise on my Unix machine and its up and running but I am not sure how I can make that to work as search head and point the other 2 machine as indexers machine to this search head.
Please help me.

0 Karma

jcrabb_splunk
Splunk Employee
Splunk Employee

This is a pretty broad topic but I would recommend reviewing the following document which will guide you with configuring a distributed environment:

Jacob
Sr. Technical Support Engineer
Get Updates on the Splunk Community!

Splunk Forwarders and Forced Time Based Load Balancing

Splunk customers use universal forwarders to collect and send data to Splunk. A universal forwarder can send ...

NEW! Log Views in Splunk Observability Dashboards Gives Context From a Single Page

Today, Splunk Observability releases log views, a new feature for users to add their logs data from Splunk Log ...

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...