Getting Data In

How to install an indexer and search head?

jeeevananand
New Member

Need to install Indexer and search head

Is the installation of an indexer just a full installation or is there a specific way to install ?

how to install a search head from the "splunk-6.1.3-220630-x64-release" downloaded from Splunk ?

Please suggest me on how to proceed

0 Karma
1 Solution

gfuente
Motivator

Hello

The installer file is the same. When the configuration applied is what defines how that server is going to behave, as an indexer or as a Search Head

Check the docs about distributed search:

http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/Whatisdistributedsearch

Regards

View solution in original post

gfuente
Motivator

Hello

The installer file is the same. When the configuration applied is what defines how that server is going to behave, as an indexer or as a Search Head

Check the docs about distributed search:

http://docs.splunk.com/Documentation/Splunk/6.2.0/DistSearch/Whatisdistributedsearch

Regards

jeeevananand
New Member

Hello gfuente,

So the installation is same as we do normally .
Just that we need to edit configuration files?

Regards.

0 Karma

hariskhan
Explorer

can you explain a bit more regarding
. what kind of configuration will promote a full instance installation of splunk as just an indexer or search head.

0 Karma

gfuente
Motivator

Yes, Config through .conf files or UI is the same.

princemanto2580
Path Finder

What are .conf file need to edit at Search Peer and Search Head.

Please elaborate.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...