Deployment Architecture

Deployment Architecture
Community Activity
mlevsh
Our Splunk Cluster Master is under resourced. To match Splunk support's recommendations we need to add CPU and RAM to...
by mlevsh Builder in Deployment Architecture 02-15-2017
0 3
0
3
sunrise
Hi Splunkers, I'm now considering of backing up Splunk indexes to prepare for recovery. I know that any buckets with...
by sunrise Contributor in Deployment Architecture 02-14-2017
1 4
1
4
vxl65703
I am a first time, I have a user who says his search heads are kicking different results on two different search head...
by vxl65703 New Member in Deployment Architecture 02-14-2017
0 7
0
7
ankithreddy777
All my Splunk instances are in linux including Deployment server. But the UF server is in Windows. Does windows UF s...
by ankithreddy777 Contributor in Deployment Architecture 02-14-2017
0 1
0
1
princemanto2580
Hi Guys, Can anyone here help me out for a steps and configuration required to make an instance as only Deployer. I...
by princemanto2580 Path Finder in Deployment Architecture 02-13-2017
0 5
0
5
dxu_splunk
While upgrading a cluster to a newer version, I upgraded the Cluster Master first. and then pushed out a bundle. Imme...
by dxu_splunk Splunk Employee Splunk Employee in Deployment Architecture 02-10-2017
0 1
0
1
Sourabhv05
I had setup multisite cluster 6.2.1. Details of my Splunk environment are mentioned below We have two sites MasterNo...
by Sourabhv05 Communicator in Deployment Architecture 02-10-2017
1 7
1
7
twinspop
We have a need to have all log data coming into an index copied off to another logging system. The index is being fed...
by twinspop Influencer in Deployment Architecture 02-10-2017
0 3
0
3
shahk
Hi, I have set up Index peering cluster, where one node is index cluster master and rest two nodes are peer nodes. I...
by shahk Explorer in Deployment Architecture 02-10-2017
0 4
0
4
areeter
Hi everyone! I would like to do a quick and dirty backup of all of my data Splunk has ever indexed. Am I fine to sto...
by areeter Explorer in Deployment Architecture 02-08-2017
0 4
0
4
rakesh_498115
Hi All, I have 4 Indexer Servers, 2 per each Site. Site1 has 2 and Site2 has 2 servers in each. All these 4 servers ...
by rakesh_498115 Motivator in Deployment Architecture 02-08-2017
0 7
0
7
ddrillic
We got a license warning yesterday and we are pretty sure it's due to excessive DEBUG events coming through. Is it p...
by ddrillic Ultra Champion in Deployment Architecture 02-08-2017
0 6
0
6
splunkranger
03-19-2014 18:47:22.017 -0500 INFO BatchReader - Will retry path="\servername1\dnsdebug\dns.log" after deferring for...
by splunkranger Path Finder in Deployment Architecture 02-08-2017
1 6
1
6
Hemnaath
Hi All, Can anyone guide us in how to fix this problem? We updated the serverclass.conf recently via deployment serve...
by Hemnaath Motivator in Deployment Architecture 02-08-2017
0 1
0
1
gozulin
we're having problems with a splunk bug (SPL-78457) and we need to upgrade our 128+ universal forwarders (linux+solar...
by gozulin Communicator in Deployment Architecture 02-07-2017
0 8
0
8
bsuresh1
We are using Splunk 6.5 environment with 5 (4+1) Search Heads where the latest SH is dedicated for Enterprise Securit...
by bsuresh1 Path Finder in Deployment Architecture 02-07-2017
0 2
0
2
puneethgowda
Hi all, How do we monitor one particular log through universal forwarder because we are writing 10 different logs in...
by puneethgowda Communicator in Deployment Architecture 02-06-2017
0 10
0
10
ktang
Greetings Splunk Answers, I recently upgraded from Splunk DB Connect 1.0.8 to 1.0.9 and am now experiencing an issue...
by ktang Explorer in Deployment Architecture 02-06-2017
0 5
0
5
eafitt
I want to send auditd.conf files to the splunk server so I can monitor when an account is created and deleted on one ...
by eafitt Path Finder in Deployment Architecture 02-06-2017
1 2
1
2
rbal_splunk
CM proclaims a SH is down if it misses 2x generation_poll_interval (set on the SH) setting: server.conf 299 #only va...
by rbal_splunk Splunk Employee Splunk Employee in Deployment Architecture 02-05-2017
1 1
1
1
muebel
A configuration bundle can be applied to a Search Head Cluster (SHC) from a Deployer with the command: splunk apply ...
by SplunkTrust SplunkTrust in Deployment Architecture 02-03-2017
0 2
0
2
GregZillgitt
We are having an internal debate concerning the frequency with which we should update our Splunk Enterprise software ...
by GregZillgitt Path Finder in Deployment Architecture 02-03-2017
2 7
2
7
fridays
Hello. We have a problem with the event handling in splunk. We get events from AWS S3 and one of the events are index...
by fridays Explorer in Deployment Architecture 02-03-2017
0 1
0
1
deepak02
Hi, I am well trained in Splunk Dashboarding. I would like to try out a POC of the Splunk Enterprise with the below ...
by deepak02 Path Finder in Deployment Architecture 02-02-2017
0 2
0
2
RJ_Grayson
While digging through my Search head logs, I stumbled upon some WARN messages from the DistributedBundleReplicationMa...
by RJ_Grayson Path Finder in Deployment Architecture 02-02-2017
0 5
0
5
Get Updates on the Splunk Community!

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...