I have Splunk Enterprise on an AWS EC2 Server, and need to install forwarders on two other EC2 Instances. Can someone direct me to documentation on how to do this? Not finding this case in the documentation. Thanks!
Use ansible or some other deployment tool to load the binaries and configs
Use a deployment tool for the binaries, and Forwarder Manager to manage configs
Bake Splunk into a custom AMI and do a bit of post-config if you want, using the tool of choice
And, in case you haven't seen this TechBrief yet, some overview information.