Deployment Architecture

Deployment Architecture
Community Activity
ams44splunk
How do I reduce the number of log messages and maintain PCI compliant auditing? The audit.rules generates too much d...
by ams44splunk New Member in Deployment Architecture 06-29-2012
0 1
0
1
fernandoandre
We have a server acting only as a Splunk Deployment Server v4.3.2 and we have activated Deployment Monitor v4.3.2. Ou...
by fernandoandre Communicator in Deployment Architecture 06-22-2012
0 1
0
1
cps42
Per the instructions found here in the splunkbase and here, I tried to use the 'setcap' command. I can't quite get it...
by cps42 Explorer in Deployment Architecture 06-21-2012
4 5
4
5
fuster_j
Is it possible to have the latest version of index server that will work with 4.2.4 search head? We are planning upg...
by fuster_j Path Finder in Deployment Architecture 06-20-2012
0 1
0
1
MasterOogway
I have multiple Splunk environments, A & B, and a client that needs to send App data to A and syslog to B. But I want...
by MasterOogway Communicator in Deployment Architecture 06-20-2012
0 2
0
2
fuster_j
I'm adding another index server into a cluster of distributed search indexes. What is the easiest way to export the ...
by fuster_j Path Finder in Deployment Architecture 06-19-2012
0 2
0
2
Lowell
I'm planning on migrating Splunk instance to new hardware and will be upgrading the OS at the same time, and I'd like...
by Lowell Super Champion in Deployment Architecture 06-15-2012
0 3
0
3
ogdin
Can I use Veritas Cluster Server to increase availability in my Splunk environment? Is this supported by Splunk?
by ogdin Splunk Employee Splunk Employee in Deployment Architecture 06-13-2012
1 1
1
1
smartroam
Dear Support, please let me know if you have an app for resin log file analysis or anything related to resin (caucho...
by smartroam New Member in Deployment Architecture 06-13-2012
0 1
0
1
Glenn
I'd like to take advantage of search head pooling mainly because of its handling of scheduled searches (I'd be happy ...
by Glenn Builder in Deployment Architecture 06-12-2012
0 7
0
7
khyoung7410
Hi Too many open files error message in my indexer. so, ulimit(file opens) values change to 4,096(soft and hard). How...
by khyoung7410 Communicator in Deployment Architecture 06-11-2012
0 1
0
1
HansK
Hi I have an application which logs every transaction in a seperate file, splunkforwarder sends these to the indexer...
by HansK Path Finder in Deployment Architecture 06-08-2012
1 6
1
6
Lowell
Anyone have and recommendations or best practices to follow when deploying splunk apps in medium to large deployments...
by Lowell Super Champion in Deployment Architecture 06-07-2012
1 4
1
4
jasonstone
Hello, What is the "Best Practice" for monitoring multiple AD Window domains when the Splunk Indexers and Search Head...
by jasonstone Explorer in Deployment Architecture 06-07-2012
0 1
0
1
gudavasr
Hi, I am moving entire index from one server to another server. I am using deployment server to deploy the index and...
by gudavasr Path Finder in Deployment Architecture 06-06-2012
0 2
0
2
bauron
I see in the documentation that, when activating a forwarder on the CLI, you pass "-server server:port -auth user:pas...
by bauron Explorer in Deployment Architecture 06-04-2012
0 5
0
5
arthurhamm
I am running Splunk Server and Universal Forwarder 4.2.1 98164. The config file "/opt/splunkforwarder/etc/system/loc...
by arthurhamm Explorer in Deployment Architecture 06-04-2012
0 9
0
9
a212830
Hi, The local Splunk folks recommended we switch from a universal forwarder to a light-forwarder in our dev env. I i...
by a212830 Champion in Deployment Architecture 06-02-2012
0 6
0
6
jeff
After installing the Splunk App for Microsoft Exchange, my "central Splunk servers" (indexers/search heads) the Aggre...
by jeff Contributor in Deployment Architecture 05-29-2012
0 5
0
5
rriley
Can't seem to get Splunk to interpret the RHEL syslog data. I have tried several different formats: syslog linux_sysl...
by rriley New Member in Deployment Architecture 05-29-2012
0 3
0
3
imacdonald2
The manual says Block signing is not supported for distributed search. I am wondering if I send data to multiple...
by imacdonald2 Path Finder in Deployment Architecture 05-29-2012
1 1
1
1
CeJay
Hi All, sorry for the lack of knowledge I have in regards to this area. But how suitable would splunk in regards to s...
by CeJay Explorer in Deployment Architecture 05-29-2012
0 2
0
2
attgjh1
I've been testing Splunk locally. Now Im planning to bring it to test in a larger environment. i'm posting this for s...
by attgjh1 Communicator in Deployment Architecture 05-29-2012
0 1
0
1
toddblake
So the title is what I need in a nutshell but I'll elaborate. We have a large-ish installation with more than 100,00...
by toddblake Explorer in Deployment Architecture 05-23-2012
0 6
0
6
magu
I found through Mr. Google some links pointing to a Splunk for Xen app for version 3.x of Splunk that was supposedly ...
by magu Engager in Deployment Architecture 05-23-2012
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...