Deployment Architecture

Deployment Architecture
Community Activity
jbarteet
Greetings, I have a distributed environment with 13 indexers and a pair of search heads with pooled searches enabled...
by jbarteet Engager in Deployment Architecture 07-05-2012
0 1
0
1
ppacheco
I am using splunk 4.3 in Amazon's ec2. I have used the "./splunk set servername" and restarted on all of the clients...
by ppacheco Explorer in Deployment Architecture 07-04-2012
0 1
0
1
hmahendrakumar
I set maxHotSpanSecs=7200 and tried indexing a old log file containing a days worth of logs(~250mb 1 million events)....
by hmahendrakumar Path Finder in Deployment Architecture 07-03-2012
0 2
0
2
squan
I have manually added a search peer using the web manager > distributed search > search peers The peer always has a ...
by squan New Member in Deployment Architecture 07-01-2012
0 1
0
1
ams44splunk
How do I reduce the number of log messages and maintain PCI compliant auditing? The audit.rules generates too much d...
by ams44splunk New Member in Deployment Architecture 06-29-2012
0 1
0
1
fernandoandre
We have a server acting only as a Splunk Deployment Server v4.3.2 and we have activated Deployment Monitor v4.3.2. Ou...
by fernandoandre Communicator in Deployment Architecture 06-22-2012
0 1
0
1
cps42
Per the instructions found here in the splunkbase and here, I tried to use the 'setcap' command. I can't quite get it...
by cps42 Explorer in Deployment Architecture 06-21-2012
4 5
4
5
fuster_j
Is it possible to have the latest version of index server that will work with 4.2.4 search head? We are planning upg...
by fuster_j Path Finder in Deployment Architecture 06-20-2012
0 1
0
1
MasterOogway
I have multiple Splunk environments, A & B, and a client that needs to send App data to A and syslog to B. But I want...
by MasterOogway Communicator in Deployment Architecture 06-20-2012
0 2
0
2
fuster_j
I'm adding another index server into a cluster of distributed search indexes. What is the easiest way to export the ...
by fuster_j Path Finder in Deployment Architecture 06-19-2012
0 2
0
2
Lowell
I'm planning on migrating Splunk instance to new hardware and will be upgrading the OS at the same time, and I'd like...
by Lowell Super Champion in Deployment Architecture 06-15-2012
0 3
0
3
ogdin
Can I use Veritas Cluster Server to increase availability in my Splunk environment? Is this supported by Splunk?
by ogdin Splunk Employee Splunk Employee in Deployment Architecture 06-13-2012
1 1
1
1
smartroam
Dear Support, please let me know if you have an app for resin log file analysis or anything related to resin (caucho...
by smartroam New Member in Deployment Architecture 06-13-2012
0 1
0
1
Glenn
I'd like to take advantage of search head pooling mainly because of its handling of scheduled searches (I'd be happy ...
by Glenn Builder in Deployment Architecture 06-12-2012
0 7
0
7
khyoung7410
Hi Too many open files error message in my indexer. so, ulimit(file opens) values change to 4,096(soft and hard). How...
by khyoung7410 Communicator in Deployment Architecture 06-11-2012
0 1
0
1
HansK
Hi I have an application which logs every transaction in a seperate file, splunkforwarder sends these to the indexer...
by HansK Path Finder in Deployment Architecture 06-08-2012
1 6
1
6
Lowell
Anyone have and recommendations or best practices to follow when deploying splunk apps in medium to large deployments...
by Lowell Super Champion in Deployment Architecture 06-07-2012
1 4
1
4
jasonstone
Hello, What is the "Best Practice" for monitoring multiple AD Window domains when the Splunk Indexers and Search Head...
by jasonstone Explorer in Deployment Architecture 06-07-2012
0 1
0
1
gudavasr
Hi, I am moving entire index from one server to another server. I am using deployment server to deploy the index and...
by gudavasr Path Finder in Deployment Architecture 06-06-2012
0 2
0
2
bauron
I see in the documentation that, when activating a forwarder on the CLI, you pass "-server server:port -auth user:pas...
by bauron Explorer in Deployment Architecture 06-04-2012
0 5
0
5
arthurhamm
I am running Splunk Server and Universal Forwarder 4.2.1 98164. The config file "/opt/splunkforwarder/etc/system/loc...
by arthurhamm Explorer in Deployment Architecture 06-04-2012
0 9
0
9
a212830
Hi, The local Splunk folks recommended we switch from a universal forwarder to a light-forwarder in our dev env. I i...
by a212830 Champion in Deployment Architecture 06-02-2012
0 6
0
6
jeff
After installing the Splunk App for Microsoft Exchange, my "central Splunk servers" (indexers/search heads) the Aggre...
by jeff Contributor in Deployment Architecture 05-29-2012
0 5
0
5
rriley
Can't seem to get Splunk to interpret the RHEL syslog data. I have tried several different formats: syslog linux_sysl...
by rriley New Member in Deployment Architecture 05-29-2012
0 3
0
3
imacdonald2
The manual says Block signing is not supported for distributed search. I am wondering if I send data to multiple...
by imacdonald2 Path Finder in Deployment Architecture 05-29-2012
1 1
1
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors