Deployment Architecture

Splunk Db Connect with Forwaders

aab5272
Engager

We want to ingest data from databases to our indexer .Would it be recommended to use heavy forwarder or UF ? Also can i load balanced the data between my indexer by making changes in output.conf?
Recommendation please

Tags (1)
0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

You must use search heads and/or heavy forwarders: http://docs.splunk.com/Documentation/DBX/3.0.3/DeployDBX/Distributeddeployment

Forwarders can handle the load balancing without adding hardware: https://docs.splunk.com/Documentation/SplunkCloud/6.6.0/Forwarding/Setuploadbalancingd

0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Deprecation of Splunk Observability Kubernetes “Classic Navigator” UI starting ...

Access to Splunk Observability Kubernetes “Classic Navigator” UI will no longer be available starting January ...