Deployment Architecture

Multisite Indexer Clustering: Can a Site be decommissioned after it has been Operational? What will be the impact?

rbal_splunk
Splunk Employee
Splunk Employee

Current Environment has an Indexer Clustering Multisite setup with Site 1 and Site 2. We plan to decommission site 2 and wanted to know the impact on Indexer Clustering.

0 Karma
1 Solution

rbal_splunk
Splunk Employee
Splunk Employee

Please note currently multi-site buckets are bonded (has persistent binding) to Originating Site.

As a result once site is created it cannot be decommissioned or else the buckets Originating from that site will never meet the Search and Replication Factor.

Splunk has pending Enhancement Bug requesting that bonding should be broken and it should be more flexible to copy/move bucket between sites. For your reference enhancement Request is --SPL-110192:Multi-site buckets should not be bonded to Originating Site.

View solution in original post

rbal_splunk
Splunk Employee
Splunk Employee

Please note currently multi-site buckets are bonded (has persistent binding) to Originating Site.

As a result once site is created it cannot be decommissioned or else the buckets Originating from that site will never meet the Search and Replication Factor.

Splunk has pending Enhancement Bug requesting that bonding should be broken and it should be more flexible to copy/move bucket between sites. For your reference enhancement Request is --SPL-110192:Multi-site buckets should not be bonded to Originating Site.

Get Updates on the Splunk Community!

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to Officially Supported Splunk ...