Deployment Architecture

How to configure search head and indexers in a Unix environment?

abhishekdharga
Engager

Hi All,

I need to configure the one Splunk server as Search head and another 2 standalone machines as indexers in distributed environment.
Can some one guide me how I can do that.
I already installed the Splunk enterprise on my Unix machine and its up and running but I am not sure how I can make that to work as search head and point the other 2 machine as indexers machine to this search head.
Please help me.

0 Karma

jcrabb_splunk
Splunk Employee
Splunk Employee

This is a pretty broad topic but I would recommend reviewing the following document which will guide you with configuring a distributed environment:

Jacob
Sr. Technical Support Engineer
Get Updates on the Splunk Community!

Splunk AI Assistant for SPL 1.1.0 | Now Personalized to Your Environment for Greater ...

Splunk AI Assistant for SPL has transformed how users interact with Splunk, making it easier than ever to ...

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureOn Demand Now Step boldly into the AI revolution with enhanced security ...

Enterprise Security Content Update (ESCU) | New Releases

In March, the Splunk Threat Research Team had 2 releases of security content via the Enterprise Security ...