Deployment Architecture

Deployment Architecture
Community Activity
eregon
Hello fellow Splunkthusiasts!TL;DR: Is there any way to connect one indexer cluster to two distinct license servers? ...
by eregon Path Finder in Deployment Architecture 02-22-2024
0 1
0
1
SN1368
helloafter I upgraded Splunk to the 9.1.1 version, some parts of the overview page in the distributed monitoring cons...
by SN1368 Observer in Deployment Architecture 02-19-2024
0 9
0
9
AMAN0113
We are planning to migrate a server that plays multiple roles as a DS, HEC, Proxy, SC4S, Syslog etc., to multiple ser...
by AMAN0113 Explorer in Deployment Architecture 02-19-2024
0 1
0
1
m_zandinia
Hi SplunkersCurrently, I have 8 indexers and about 100 indexes! Here is a sample of my indexes.conf: # volumes [volum...
by m_zandinia Path Finder in Deployment Architecture 02-18-2024
0 3
0
3
dokaas_2
In an multi-site cluster Splunk replicates the data to the remote site, but doe Splunk also replicate the index infor...
by dokaas_2 Communicator in Deployment Architecture 02-17-2024
0 8
0
8
Mad2
need to install the splunk enterprise and wanted to make SH and indexer , universal forwarder  same system , please a...
by Mad2 Observer in Deployment Architecture 02-16-2024
0 3
0
3
paecon
Having trouble finding an answer for this one but is it possible to change just the cold database location to a NAS f...
by paecon New Member in Deployment Architecture 02-16-2024
0 3
0
3
pcsegal1
Hi, I have a legacy Splunk Enterprise cluster that consists of: 1 cluster master3 indexers, forming an indexer cluste...
by pcsegal1 Explorer in Deployment Architecture 02-14-2024
0 14
0
14
bapun18
Hi Team,I need to decrease the number of indexers used to half, in my current configurations we have site replication...
by bapun18 Communicator in Deployment Architecture 02-13-2024
0 4
0
4
briancronrath
I wasn't sure if having multiple different license managers would cause any violations.  Ideally we really do not lik...
by briancronrath Contributor in Deployment Architecture 02-13-2024
0 2
0
2
faizalabu
Hi Team,  I want to implement HF as in HA in container setup. can you help here ? 
by faizalabu New Member in Deployment Architecture 02-12-2024
0 1
0
1
munang
Hello. I am a Splunk newbie.I have a question about the replication factor in searchhead clustering.Looking at the do...
by munang Path Finder in Deployment Architecture 01-31-2024
0 2
0
2
tomk1
Hello, I use an Universal Forwarder to monitor syslog-ng logs. The logs are splited in 24 logs for one day (so 1 log ...
by tomk1 Engager in Deployment Architecture 01-31-2024
2 3
2
3
asofo
We're looking to disable the management port (8089) on current and future clients. Can this be done from a policy or ...
by asofo Path Finder in Deployment Architecture 01-28-2024
1 12
1
12
veryfoot
Hi all, Im under Splunk Version 9.0.2.After decomissionning one indexer in a multi site clustering, I cant retrieve m...
by veryfoot Path Finder in Deployment Architecture 01-28-2024
0 18
0
18
nateloepker
Hello,I'm am wondering how other security service providers have handled this issue or what is best practiceTo plan f...
by nateloepker Explorer in Deployment Architecture 01-28-2024
0 1
0
1
vijreddy30
Hi, UF etc/apps/remo/local placed the inputs,outputs,props and tranforms configuration files  and search the data in ...
by vijreddy30 Loves-to-Learn Everything in Deployment Architecture 01-25-2024
0 3
0
3
mmcap
When monitoring Windows systems which logs do you find to give the best information for finding security events and t...
by mmcap Explorer in Deployment Architecture 01-25-2024
0 4
0
4
davidpaper
There are a number of posts on how to fix duplicate GUIDs on FWDs (https://answers.splunk.com/answers/32368/duplicate...
by davidpaper Contributor in Deployment Architecture 01-22-2024
2 6
2
6
munang
 Hello.I have a question about the captain selection process.Let me ask you a question using the example below.1. In ...
by munang Path Finder in Deployment Architecture 01-22-2024
0 2
0
2
veryfoot
Hi all, I'm actually have to decomission 6 indexers on a 9/9 multi site cluster of indexers. The command passed : spl...
by veryfoot Path Finder in Deployment Architecture 01-22-2024
0 4
0
4
Manior
Hi, I'm new to Splunk and relatively inexperienced with DevOps topics. I have a Splunk Opentelemetry Collector deploy...
by Manior New Member in Deployment Architecture 01-19-2024
0 0
0
0
MikeWilliams
Hello EveryoneThere is one index cluster, one search header, one management node, and three peers. The configuration ...
by MikeWilliams New Member in Deployment Architecture 01-17-2024
0 1
0
1
chclemence
Hello, I see that Linux kernel 2.6 is deprecated since 1 year (on April 2018, with Splunk 7.1.0). https://docs.splun...
by chclemence Explorer in Deployment Architecture 01-15-2024
0 3
0
3
Nawab
while configuring RF and SH, can we configure that only one server should be used for saving all copies of data and d...
by Nawab Communicator in Deployment Architecture 01-15-2024
0 1
0
1
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors