Deployment Architecture

Deployment Architecture
Community Activity
robertlynch2020
Hi I have a single install (Everything on one machine). I want to go to one search head and 2 indexers (non clustere...
by robertlynch2020 Influencer in Deployment Architecture 10-11-2019
1 10
1
10
sonny_monti
Dear comunity, I would like to maintain the search peers' status of every app in the deployer, and not on search pee...
by sonny_monti Path Finder in Deployment Architecture 10-11-2019
0 3
0
3
marksnelling
I'm not wanting to monitor these events and yet the scripts still run every minute (by looking at the task manager). ...
by marksnelling Communicator in Deployment Architecture 10-10-2019
1 11
1
11
foufoumad
I have some questions concerning a Splunk deployment i'm working on, we have a single Splunk instance and we want to ...
by foufoumad New Member in Deployment Architecture 10-10-2019
0 2
0
2
sachinbansal
I have installled the Splunk free trail version and want to forward data from other server using splunk forwarder. Is...
by sachinbansal New Member in Deployment Architecture 10-08-2019
0 3
0
3
brettcave
i know this has been asked before, such as https://answers.splunk.com/answers/432048/is-there-a-way-to-migrate-indexe...
by brettcave Builder in Deployment Architecture 10-08-2019
0 2
0
2
richgalloway
How do you restart splunk? (originally a response to https://answers.splunk.com/answers/386613/how-do-i-reset-the-pa...
by SplunkTrust SplunkTrust in Deployment Architecture 10-07-2019
0 4
0
4
aojie654
Hi, Splunkers: About a week ago, a customer asked me that is there a reference for deployment server which has 1200+...
by aojie654 Path Finder in Deployment Architecture 10-07-2019
0 1
0
1
ips_mandar
I have batch input [batch://C:\abc\*.zip] move_policy = sinkhole index = xyz host_segment = 2 crcSalt = <SOURCE> sou...
by ips_mandar Builder in Deployment Architecture 10-06-2019
0 4
0
4
brettcave
I am trying to configure a master node in a splunk cluster to be an indexer master and shc deployer. I install Splunk...
by brettcave Builder in Deployment Architecture 10-06-2019
0 7
0
7
bmw417
I've been reading around the docs and other questions, and from what I can tell, Splunk is supposed to be taking an M...
by bmw417 New Member in Deployment Architecture 10-06-2019
0 2
0
2
naagaraj
Hi All, I am using splunk enterprise version 7.1. I am looking for a way to backup the splunk index data into Amazon...
by naagaraj Engager in Deployment Architecture 10-04-2019
0 1
0
1
rileyken
I have single windows server running Splunk enterprise, and I have a Linux server with the universal forwarder instal...
by rileyken Explorer in Deployment Architecture 10-04-2019
0 4
0
4
scottj1y
I've got a search head cluster running and have a host that I've set as the cluster captain. Other than the configur...
by scottj1y Path Finder in Deployment Architecture 10-03-2019
0 4
0
4
VijaySrrie
Our indexer cluster master has 2 indexers, one has stopped reporting The indexer which was reporting to indexer clus...
by VijaySrrie Builder in Deployment Architecture 10-03-2019
0 2
0
2
umesh_phendarka
What is the splunk Search Query for Logged-in Users on Linux Servers I want to have dashboard for currently logged i...
by umesh_phendarka New Member in Deployment Architecture 10-02-2019
0 2
0
2
jonringler
I am looking into simplifying my Splunk architecture. I currently have two Linux indexers in different regions. They...
by jonringler Engager in Deployment Architecture 10-02-2019
1 1
1
1
Olamide22
All, I have gone through all the related threads here but I can't find a possible solution to my version of this is...
by Olamide22 Explorer in Deployment Architecture 10-02-2019
0 4
0
4
agarws8
On the forwarder management, I was missing a client (which is indexing data and showing in search as well) That same ...
by agarws8 New Member in Deployment Architecture 10-01-2019
0 1
0
1
zippyopsadmin
my local splunk master having a ossim_alarms.log file my requirement is that file to apply a multiple souretype
by zippyopsadmin New Member in Deployment Architecture 10-01-2019
0 1
0
1
robertlynch2020
Hi I have one search head and two indexers (Non-Clustered). So how do I update data models? (E.G new Field, update ...
by robertlynch2020 Influencer in Deployment Architecture 10-01-2019
0 5
0
5
kaskirana01
Problem replicating config (bundle) to search peer '10.215.3.196:8089',Reading reply to upload: rv=-2, Receive from=h...
by kaskirana01 New Member in Deployment Architecture 09-30-2019
0 2
0
2
geoppspl7
For about a week, two of our indexers were not replicating to their slaves - oddly this reduced our license usage by ...
by geoppspl7 Explorer in Deployment Architecture 09-29-2019
1 7
1
7
thol
We have a index cluster with 10+ indexers running on Splunk version 6.6.1. Some of the indexed events suddenly went m...
by thol Explorer in Deployment Architecture 09-27-2019
0 2
0
2
adukes_splunk
Does anyone have any good resources about indexes and index management? Before I set up a bunch of indexes, I'd like...
by adukes_splunk Splunk Employee Splunk Employee in Deployment Architecture 09-26-2019
0 3
0
3
Get Updates on the Splunk Community!

From Raw Data to Executive-Ready Stories, Faster

Build Data Stories for Every Audience  A dashboard is rarely just a dashboard. It might be the view an ...

Guided Onboarding with Auto-schema Is Now Generally Available

  We are excited to announce the General Availability of Guided Onboarding with Auto-Schematization ...

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...