Deployment Architecture

Deployment Architecture
Community Activity
neltonk
Hi I have created a splunk cluster with the following configuration: 1 * Master (also the licensing master) - indexi...
by neltonk Path Finder in Deployment Architecture 07-05-2018
0 4
0
4
mvagionakis
Hello all, I have a "problem" with a new indexer added in my cluster. My cluster has two indexers. The goal is to r...
by mvagionakis Path Finder in Deployment Architecture 07-05-2018
0 0
0
0
rchittip
Dears, I have two search heads in my environment and have two different HTTP URLs for my end users for splunk login....
by rchittip Path Finder in Deployment Architecture 07-03-2018
0 1
0
1
yanivamram
Hi All, I wonder if we could forward a search result output to syslog server? Something like: earliest=-1h sourcetyp...
by yanivamram Path Finder in Deployment Architecture 07-03-2018
0 2
0
2
ralphw_SAIC
We have multiple window SUFs sending logs to a HF that then divide the winevent:security logs between two indexers. O...
by ralphw_SAIC Path Finder in Deployment Architecture 07-03-2018
0 2
0
2
greatdane
I am new to trying to set up a dev environment with 1 deployment server, 1 search head/forwarder 1 master cluster, 2...
by greatdane New Member in Deployment Architecture 07-02-2018
0 3
0
3
robinpilch
I'm currently using a Universal forwarder to forward log data out to a Splunk cloud deployment from internal forwarde...
by robinpilch New Member in Deployment Architecture 07-02-2018
0 1
0
1
ryanbamford
has anyone created the connection between the google bigquery and splunk and if so what did you use in your types con...
by ryanbamford Engager in Deployment Architecture 07-02-2018
8 0
8
0
ramarcsight
Hello everyone I restarted a indexer IDX1 which is already in a cluster . So after restarting IDX1 i see this error ...
by ramarcsight Explorer in Deployment Architecture 07-01-2018
0 4
0
4
vj5
Can we parse a log using Splunk universal forwarder ?
by vj5 New Member in Deployment Architecture 06-30-2018
0 2
0
2
chennai
Hi! I am new to Splunk. I just download the Splunk 4.1.4 tar file and untar on the host, What is the next step to con...
by chennai Explorer in Deployment Architecture 06-29-2018
1 12
1
12
rogue_carrot
Hello Team, I am trying to do a simple thing. I am trying to forward a log file to my remote Splunk indexer. I am us...
by rogue_carrot Communicator in Deployment Architecture 06-28-2018
0 5
0
5
Yod_ssoni
Hi, Today morning 2 search heads out of 3 from cluster went down. When i checked it killed by OS with message 'out of...
by Yod_ssoni Explorer in Deployment Architecture 06-28-2018
0 5
0
5
simpkins1958
Is this a known issue? Using Splunk Enterprise 7.0.2 on Windows Server 2012 R2. Faulting application name: splunk-op...
by simpkins1958 Contributor in Deployment Architecture 06-28-2018
1 4
1
4
marrette
I'm working with a Splunk Enterprise 6.4.1 setup that has a index cluster spread over three Windows nodes. Typically ...
by marrette Path Finder in Deployment Architecture 06-27-2018
0 0
0
0
brent_weaver
I would like to know if it is possible to use the splunk deployment server to manage index apps (.../etc/master-apps)...
by brent_weaver Builder in Deployment Architecture 06-27-2018
0 12
0
12
ben_leung
If looking at scheduler log from a single search head in the search head cluster, what does status=delegated_remote O...
by ben_leung Builder in Deployment Architecture 06-27-2018
3 5
3
5
jcal
I've been getting this error: ./splunk add monitor /var/log/*log ERROR: Couldn't determine $SPLUNK_HOME or $SPLUNK_E...
by jcal Engager in Deployment Architecture 06-27-2018
1 2
1
2
ShaunBaker
How do you go about ensuring splunk forwarders forward all data from a gold image created VM that then gets blown awa...
by ShaunBaker Path Finder in Deployment Architecture 06-26-2018
0 0
0
0
sniderwj
I am working on a script to thaw frozen buckets. Part of my script is to validate that the selected buckets are valid...
by sniderwj Explorer in Deployment Architecture 06-26-2018
0 0
0
0
AjayKumarGupta
i have attached snapshot which i have done for elastic search , want same to do with splunk enterprise to export user...
by AjayKumarGupta Engager in Deployment Architecture 06-26-2018
1 0
1
0
keekkenen
Hi, all I created custom indexer with default parameters and for files/folder monitor define it indexer. After added ...
by keekkenen Engager in Deployment Architecture 06-26-2018
0 1
0
1
Chennai_999
While pumping the logs from the device to splunk through light weight splunk forwarder( LWF ), due some issues if dev...
by Chennai_999 New Member in Deployment Architecture 06-25-2018
0 0
0
0
bg10010
I have AWS cloudtrail, vpc flow logs and cloudwatch logs being indexed and are searchable in splunk via kinesis fireh...
by bg10010 New Member in Deployment Architecture 06-25-2018
0 0
0
0
vj5
Developers are sending a log in json format. But splunkforwarder is reading the log as single line text. What migt th...
by vj5 New Member in Deployment Architecture 06-25-2018
0 3
0
3
Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...