Deployment Architecture

Deployment Architecture
Community Activity
sscharma
Hi, i am running Splunk on Kubernetes with SmartStore. In order to increase node CPU/memory utilization, I have coll...
by sscharma New Member in Deployment Architecture 01-29-2020
0 1
0
1
paccio84
Hi @All, I will explain my situation now: On my Splunk Enterprise (7.2.6) environment I have configured the option C...
by paccio84 New Member in Deployment Architecture 01-29-2020
0 1
0
1
Raghav2384
Hello, We have a Search head cluster in our environment and the person who set up the Deployer initially forgot the ...
by Raghav2384 Motivator in Deployment Architecture 01-28-2020
1 12
1
12
brettcave
Hi, i was running a single indexer which has props / transforms in etc/system/local. The indexer was migrated to an ...
by brettcave Builder in Deployment Architecture 01-28-2020
0 1
0
1
jwalzerpitt
On my Deployment server in the /opt/splunk/etc/deployment-apps directory, I have the Splunk_TA_f5-bigip app with a lo...
by jwalzerpitt Influencer in Deployment Architecture 01-28-2020
0 6
0
6
ad077
collectd service is not sending data to splunk on Ubuntu 16. Jan 28 08:07:10 cga2ubctd systemd[1]: Starting Statisti...
by ad077 New Member in Deployment Architecture 01-28-2020
0 1
0
1
sandyuce
Hi All, We have logs from IIS Servers and application service k8s pod logs which details TraceId, SpanId and parent...
by sandyuce New Member in Deployment Architecture 01-27-2020
0 0
0
0
srampally
The average load on our linux heavyforwarder is around 20. what can i do to reduce it and will increasing core count...
by srampally Path Finder in Deployment Architecture 01-27-2020
0 1
0
1
sail4lot
In the multi-site architecture models, it is not clear what settings on retention are available to you. Is it possib...
by sail4lot Path Finder in Deployment Architecture 01-27-2020
0 1
0
1
pc1234
i need a splunk query that will the list the applications on each member of the search head cluster. i am running th...
by pc1234 Explorer in Deployment Architecture 01-26-2020
0 1
0
1
danielbb
Yesterday I saw the following within serverclass.conf - [serverClass:<name>] whitelist.0 = <server1>.<domain>.com w...
by danielbb Motivator in Deployment Architecture 01-24-2020
0 3
0
3
zachsisinst
index="myindex" cluster="mycluster" http_request="/" | bucket _time span=5m | timechart count by x_forwarded_for useo...
by zachsisinst Explorer in Deployment Architecture 01-23-2020
0 3
0
3
damode
Everytime I do splunk reload deploy-server, it restarts both the Indexers (which are being managed by DS), which is ...
by damode Motivator in Deployment Architecture 01-23-2020
0 2
0
2
smitapatankarso
I have splunk instance running on one linux server. I have python code on another linux server, which I run manually ...
by smitapatankarso Explorer in Deployment Architecture 01-23-2020
0 2
0
2
vishaltaneja070
Distsearch.conf in system/local modified after i push any app from deployer to SHC. Not sure why? why it is modified?...
by vishaltaneja070 Motivator in Deployment Architecture 01-22-2020
0 0
0
0
nls7010
Clients wanted a change in how there data was displayed using the sourcetype they first used. How do I remove all of...
by nls7010 Path Finder in Deployment Architecture 01-22-2020
0 2
0
2
sudhir7
Hi guys, We tried data rebalancing. But nothing happens. We are forwarding data from universal forwarder using clus...
by sudhir7 Explorer in Deployment Architecture 01-21-2020
1 1
1
1
anandhalagarasa
We are using Enterprise Trial License in our test environment so we just want to know whether we are able to create m...
by anandhalagarasa Path Finder in Deployment Architecture 01-21-2020
1 9
1
9
nawazns5038
Can I please know the process of adding a new indexer to the indexer cluster ? Should the cluster be kept in mainte...
by nawazns5038 Builder in Deployment Architecture 01-20-2020
1 6
1
6
peterm30
I'm dealing with bash_history files in the following format. I would like to extract the timestamp and use that as th...
by peterm30 Path Finder in Deployment Architecture 01-19-2020
0 13
0
13
jshael
Any help figuring out how to design a query for this would be helpful.
by jshael New Member in Deployment Architecture 01-19-2020
0 2
0
2
bsaujla131984
How can we check which directories are being indexed for Unix server in Splunk?
by bsaujla131984 Path Finder in Deployment Architecture 01-18-2020
0 4
0
4
mmarkleybac
I've built a modular alert with a setup.xml to create credentials on the storage/passwords endpoint and to store a se...
by mmarkleybac Engager in Deployment Architecture 01-17-2020
0 2
0
2
sarwshai
I need to build Splunk Distributed Environment, how should i configure the different components. I have License/Clust...
by sarwshai Communicator in Deployment Architecture 01-17-2020
0 6
0
6
reed_kelly
I haven't been able to find this in the docs. The bucket ID is the last number in the name of a bucket directory. For...
by reed_kelly Contributor in Deployment Architecture 01-15-2020
5 5
5
5
Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...
Top Solution Authors