Installation

Changing role of Splunk instances cause problem to my new search head

sabaKhadivi
Path Finder

As I migrate from one search head to new one, I change the state of one of my indexers to be heavy forwarder for new search head, the problem is that I don't receive HF's logs regularly on new search head ,but on my previous search head I receive logs correctly from that indexer, what is the reason and how can I solve it ?

Labels (3)
0 Karma
Get Updates on the Splunk Community!

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

SignalFlow: What? Why? How?

What is SignalFlow? Splunk Observability Cloud’s analytics engine, SignalFlow, opens up a world of in-depth ...

Federated Search for Amazon S3 | Key Use Cases to Streamline Compliance Workflows

Modern business operations are supported by data compliance. As regulations evolve, organizations must ...