Getting Data In

Splunk 5 as VM and using Nimble Storage for shared storage

cgisplunk
Path Finder

Hello everyone,

Does anyone use or know anyone using Splunk 5 in this topology: 2 Splunk indexers (clustered & replicated) running as a VMware VM guest and connecting to Nimble Storage CS220G series storage via iSCSI?
Thank you.
S.

0 Karma
1 Solution

cgisplunk
Path Finder

Almost.
We ended up deploying another Indexer on hardware server, but we'll deploy a search head as a VM with Nimble CS behind it, but again all indexing will be done on a metal local storage box.

View solution in original post

0 Karma

cgisplunk
Path Finder

Almost.
We ended up deploying another Indexer on hardware server, but we'll deploy a search head as a VM with Nimble CS behind it, but again all indexing will be done on a metal local storage box.

0 Karma

cfeskens
Explorer

Thanks for your response. Did you attempt running an indexer on the Nimble CS at all and opt for hardware based on your experiences, or just avoid it alltogether?

0 Karma

cgisplunk
Path Finder

Opted for hardware based on Splunk PS best practices. Bare metal is still the best option for Splunk Indexers.

cfeskens
Explorer

Did you end up attempting this? I'm considering the same setup myself, and would be curious as to your experience.

0 Karma

cgisplunk
Path Finder

Almost.
We ended up deploying another Indexer on hardware server, but we'll deploy a search head as a VM with Nimble CS behind it, but again all indexing will be done on a metal local storage box.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...