Deployment Architecture

Deployment Architecture
Community Activity
butzowj
Hey all, We have seen these crashes happen on two servers the past few days. Is there anything in the crash log tha...
by butzowj Path Finder in Deployment Architecture 04-28-2016
0 2
0
2
basanthp
I have a search head cluster with 6 nodes + 1 deployer with Splunk 6.3.1. Is there a dependency for the deployer to b...
by basanthp Path Finder in Deployment Architecture 04-28-2016
0 1
0
1
smudge797
We have a multisite cluster which has search head clustering configured and all is working fine. I want to add a sin...
by smudge797 Path Finder in Deployment Architecture 04-27-2016
0 1
0
1
ontkanin
Hi there, I am trying to configure my Splunk environment (1xSH, 2xIndexers (cluster), 1xClusterMaster) to use parall...
by ontkanin Path Finder in Deployment Architecture 04-26-2016
0 3
0
3
Ed_Alias
Hi, we have a splunk cluster with : -a master -2 indexer -a search head we are planning maintenance updates etc...
by Ed_Alias Path Finder in Deployment Architecture 04-25-2016
0 3
0
3
geelsu
I have Splunk at work and am new to it so I want to learn as much as I can. I installed it at home on my Windows 7 P...
by geelsu New Member in Deployment Architecture 04-23-2016
0 4
0
4
matts1234
I run a distributed environment within which the Search tier is comprised of a Search Head Cluster. All my Splunk app...
by matts1234 Engager in Deployment Architecture 04-22-2016
1 3
1
3
francis_larkin
I recently upgraded from 4.3 to 6.3.3 using an RPM update. I followed the recommendations of Splunk and upgraded from...
by francis_larkin New Member in Deployment Architecture 04-22-2016
0 1
0
1
Yaichael
Quick question about HF. Do you necessarily need two separated Splunk instances for Heavy Forwarding data? (One for ...
by Yaichael Communicator in Deployment Architecture 04-22-2016
0 3
0
3
israelgutierrez
Hi We have weird behavior, in the Data Summary Screen on the Search Head, we see a Host reporting events, when clic ...
by israelgutierrez Path Finder in Deployment Architecture 04-21-2016
0 21
0
21
splunkIT
I know that in a clustered environment, I cannot just manually delete/roll the buckets off colddb directory manually....
by splunkIT Splunk Employee Splunk Employee in Deployment Architecture 04-21-2016
2 3
2
3
TLAZO
Good morning, We have an splunk architecture with 2 Search Heads and 2 Indexers. This morning when our user tried to...
by TLAZO Explorer in Deployment Architecture 04-21-2016
0 4
0
4
glentes
We have updated our test Splunk infrastructure to 6.3.3 to evaluate this version before updating the production lands...
by glentes Path Finder in Deployment Architecture 04-20-2016
0 4
0
4
sat94541
I have a three Node Search Head Cluster environment and I suspect that some of the scheduled searches are running mul...
by sat94541 Communicator in Deployment Architecture 04-19-2016
1 1
1
1
hkosuru
Hello, We have database connectors set up in Splunk to run database queries. Can you create Data Models using databa...
by hkosuru Explorer in Deployment Architecture 04-18-2016
0 3
0
3
rbal_splunk
After upgrading to 6.4.0 today, we are unable to generate a diag from an indexer cluster peer: When I attempt to ru...
by rbal_splunk Splunk Employee Splunk Employee in Deployment Architecture 04-18-2016
9 3
9
3
ctaf
Hello, I would like to backup the indexed data on a remote server. I tried rsync: rsync -aAXv -R -e ssh --exclude='...
by ctaf Contributor in Deployment Architecture 04-18-2016
0 9
0
9
burwell
I am using the Splunk archiving feature where events are archived to HDFS after a certain amount of time (23 days in...
by SplunkTrust SplunkTrust in Deployment Architecture 04-15-2016
0 1
0
1
dpanych
Hello, we have a syslog device that is sending log in UTC, but we need them to be in US/Pacific. Where do I set the T...
by dpanych Communicator in Deployment Architecture 04-15-2016
0 2
0
2
scaffster
I'm trying to get Splunk to reload the deployment server when we have updated our apps without having to manually go ...
by scaffster Explorer in Deployment Architecture 04-14-2016
0 10
0
10
quixand
Hi all, I need to get some stats from an Apache ActiveMQ message broker. The broker has a web dashboard of broker qu...
by quixand Path Finder in Deployment Architecture 04-14-2016
0 3
0
3
_smp_
As a pretty new user, I recently installed the Universal Forwarder on a Linux server, created a file input, and forwa...
by _smp_ Builder in Deployment Architecture 04-13-2016
0 4
0
4
rcoop2016_2
Where level of effort is measured in number of days, what is the difference (if any) in the level of effort to deploy...
by rcoop2016_2 New Member in Deployment Architecture 04-13-2016
0 1
0
1
ameslet
Hi Splunkers, I am new to Splunk and I have to install and configure Splunk on three virtual machines (1 Search Hea...
by ameslet Explorer in Deployment Architecture 04-13-2016
0 3
0
3
andrearodrigues
Hi, In a multisite distributed search environment with 1 search head and 4 indexers, it seems that the Search Head h...
by andrearodrigues Explorer in Deployment Architecture 04-13-2016
5 6
5
6
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...
Top Solution Authors