Deployment Architecture

Deployment Architecture
Community Activity
paecon
Having trouble finding an answer for this one but is it possible to change just the cold database location to a NAS f...
by paecon New Member in Deployment Architecture 02-16-2024
0 3
0
3
pcsegal1
Hi, I have a legacy Splunk Enterprise cluster that consists of: 1 cluster master3 indexers, forming an indexer cluste...
by pcsegal1 Explorer in Deployment Architecture 02-14-2024
0 14
0
14
bapun18
Hi Team,I need to decrease the number of indexers used to half, in my current configurations we have site replication...
by bapun18 Communicator in Deployment Architecture 02-13-2024
0 4
0
4
briancronrath
I wasn't sure if having multiple different license managers would cause any violations.  Ideally we really do not lik...
by briancronrath Contributor in Deployment Architecture 02-13-2024
0 2
0
2
faizalabu
Hi Team,  I want to implement HF as in HA in container setup. can you help here ? 
by faizalabu New Member in Deployment Architecture 02-12-2024
0 1
0
1
munang
Hello. I am a Splunk newbie.I have a question about the replication factor in searchhead clustering.Looking at the do...
by munang Path Finder in Deployment Architecture 01-31-2024
0 2
0
2
tomk1
Hello, I use an Universal Forwarder to monitor syslog-ng logs. The logs are splited in 24 logs for one day (so 1 log ...
by tomk1 Engager in Deployment Architecture 01-31-2024
2 3
2
3
asofo
We're looking to disable the management port (8089) on current and future clients. Can this be done from a policy or ...
by asofo Path Finder in Deployment Architecture 01-28-2024
1 12
1
12
veryfoot
Hi all, Im under Splunk Version 9.0.2.After decomissionning one indexer in a multi site clustering, I cant retrieve m...
by veryfoot Path Finder in Deployment Architecture 01-28-2024
0 18
0
18
nateloepker
Hello,I'm am wondering how other security service providers have handled this issue or what is best practiceTo plan f...
by nateloepker Explorer in Deployment Architecture 01-28-2024
0 1
0
1
vijreddy30
Hi, UF etc/apps/remo/local placed the inputs,outputs,props and tranforms configuration files  and search the data in ...
by vijreddy30 Loves-to-Learn Everything in Deployment Architecture 01-25-2024
0 3
0
3
mmcap
When monitoring Windows systems which logs do you find to give the best information for finding security events and t...
by mmcap Explorer in Deployment Architecture 01-25-2024
0 4
0
4
davidpaper
There are a number of posts on how to fix duplicate GUIDs on FWDs (https://answers.splunk.com/answers/32368/duplicate...
by davidpaper Contributor in Deployment Architecture 01-22-2024
2 6
2
6
munang
 Hello.I have a question about the captain selection process.Let me ask you a question using the example below.1. In ...
by munang Path Finder in Deployment Architecture 01-22-2024
0 2
0
2
veryfoot
Hi all, I'm actually have to decomission 6 indexers on a 9/9 multi site cluster of indexers. The command passed : spl...
by veryfoot Path Finder in Deployment Architecture 01-22-2024
0 4
0
4
Manior
Hi, I'm new to Splunk and relatively inexperienced with DevOps topics. I have a Splunk Opentelemetry Collector deploy...
by Manior New Member in Deployment Architecture 01-19-2024
0 0
0
0
MikeWilliams
Hello EveryoneThere is one index cluster, one search header, one management node, and three peers. The configuration ...
by MikeWilliams New Member in Deployment Architecture 01-17-2024
0 1
0
1
chclemence
Hello, I see that Linux kernel 2.6 is deprecated since 1 year (on April 2018, with Splunk 7.1.0). https://docs.splun...
by chclemence Explorer in Deployment Architecture 01-15-2024
0 3
0
3
Nawab
while configuring RF and SH, can we configure that only one server should be used for saving all copies of data and d...
by Nawab Communicator in Deployment Architecture 01-15-2024
0 1
0
1
yoshileigh66
I am aware of forwarder -> indexer -> search head. However, when reading about streaming commands, Splunk states "A d...
by yoshileigh66 Explorer in Deployment Architecture 01-12-2024
0 4
0
4
att35
Hi all,I am trying to authenticate a user against REST API but when testing via CURL, it is failing when using LB URL...
by att35 Builder in Deployment Architecture 01-11-2024
0 0
0
0
Pawlub1
So I am troubleshooting missing data from hosts, I have the index name that is missing the data, and so I would like ...
by Pawlub1 Engager in Deployment Architecture 01-09-2024
0 6
0
6
slider8p2023
Hi,Does anyone out there use any archiving software to monitor, report and manage frozen bucket storage in an on-prem...
by slider8p2023 Explorer in Deployment Architecture 01-08-2024
0 0
0
0
flakshack
This started out as a question, but is now just an FYI.  Similar to this post, this week I received a old vulnerabili...
by flakshack Path Finder in Deployment Architecture 01-08-2024
0 1
0
1
jbv
Hi,Were currently deploying our internal Splunk instance and were looking for a way to monitoring the data sources th...
by jbv Engager in Deployment Architecture 01-08-2024
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...
Top Solution Authors