Getting Data In

How do I install a heavy forwarder for Splunk Cloud in a Windows environment?

hkumar26
New Member

Hi,
Want to install HF for Splunk cloud on windows.
Downloaded the Splunk enterprise 6.6.2 for windows from splunk website. If i install the downloaded file, how will it become a HF? the user permission mentioned is docs is for Splunk enterprise or they are for applicable to HF as well?

0 Karma
1 Solution

adonio
Ultra Champion

Hello there,
Splunk has binaries for all instance roles.
Your install will become a Heavy Forwarder once you will configure its outputs.conf, meaning tell it where to send the data to. probably to your splunk cloud instance.
for your second question, yes, they are applicable to all splunk instances / roles
hope it helps

View solution in original post

0 Karma

hkumar26
New Member

Forgot to add another part to it:

I need to download (from the cloud iinstance) the Splunkclouduf.spl and install it on the HWF. Is the .spl availabe on splunk Cloud web GUI or this needs to be downloaded from splunk website as well.

Thanks in advance

0 Karma

lfedak_splunk
Splunk Employee
Splunk Employee
0 Karma

adonio
Ultra Champion

Hello there,
Splunk has binaries for all instance roles.
Your install will become a Heavy Forwarder once you will configure its outputs.conf, meaning tell it where to send the data to. probably to your splunk cloud instance.
for your second question, yes, they are applicable to all splunk instances / roles
hope it helps

0 Karma

hkumar26
New Member

Thanks Adonio.
that answers my question.

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...