Getting Data In

How to setting splunk an architecture of 01 heavy forwarder, 01 search head and 01 indexer?

jfeitosa
Path Finder

Hi guys!

How to setting splunk an architecture of 01 heavy forwarder, 01 search head and 01 indexer?
I need to collect Windows events, firewalls and Cisco routers in an environment with heavy forwarder 01, 01 and 01 head search indexer.
How would the configuration of each?

Please help.

0 Karma

ChrisG
Splunk Employee
Splunk Employee

Sounds like Departmental deployment: Single indexer in the Distributed Deployment Manual.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust
0 Karma
Get Updates on the Splunk Community!

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...