Deployment Architecture

Splunk Standalone High availability setup required servers.

vijreddy30
Loves-to-Learn Everything

Hi team,

 

Currently we are implemented the Standalone below servers,

Zone-1

Environment

Server Name

IP

Splunk Role

DEV

L4

 

 

Search Head+ Indexer

QA

L4

 

 

Search Head + Indexer

L4

 

 

Deployment Server

 

Zone-2

    

Environment

Server Name

IP

Splunk Role

DEV

L4

 

 

Search Head + Indexer

QA

L4

 

 

Search Head + Indexer

 

In our environment, only 2 Indexer + Search head server is there on the same instance

 

How to Implement the High Availability Servers?

 

please help me the process.

            

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @vijreddy30 ,

see in the Splunk Validated Architectures document (https://www.splunk.com/en_us/pdfs/tech-brief/splunk-validated-architectures.pdf) what Splunk means for HA and how to implement it.

For your requirements, it's really difficoult to answer to your question!

Maybe there are some replication mechanisms, based on VM-Ware, to do this, but I'm not an expert on VM-Ware and this isn't the location for this question.

Ciao.

Giuseppe

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Honestly - I have no idea what those tables are supposed to represent.

I understand that there are two separate "zones" and you have some servers in them. How many servers and what roles do they have? Is there any connectivity between those zones or are they completely air-gapped? If so then how do you handle licensing?

What do you mean by "implement high availability"? On which layer? Architecting an environment from scratch is usually a relatively big and important task so while this forum is a good place for asking general architecture-related questions it's not a replacement for the work of properly trained Splunk Pre-sales team or Splunk Partner engineers.

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...