Installation

How to deploy Splunk on AIX/Unix servers for server performance monitoring?

gsrikanth87
Path Finder

Hallo,

We have 90 AIX/Unix servers. We are planning to implement Splunk on them. Now I have 2 to 3 test servers with me. Can you please explain me where to install the splunk applications and step by step procedure? For example:

ser1- splunk app(server)
ser2- splunk forwarder with addon (client1)
ser3- splunk forwarder with addon (client2)

If the above is correct, could you please explain the step by step procedure to deploy Splunk for system monitoring?

yannK
Splunk Employee
Splunk Employee

for details about the deployment
http://docs.splunk.com/Documentation/UnixApp/5.1TA/User/AbouttheSplunkTechnicalAdd-on%28TA%29forUnix...

For the Unix app, you need :

  • the "Splunk App for Unix and Linux" on the search-head (for the dashboards)
    download here https://apps.splunk.com/app/273/

  • the "Splunk Add-on for Unix and Linux" on the indexers (for the indexes and sourcetype definitions), and on the forwarders (for the monitoring inputs and scripts)
    download here https://apps.splunk.com/app/833

The extra step will be to preconfigure the add-on to enable the inputs you want before deploying it to the forwarders.
I recommend to use a full standalone splunk install, install the add-on, and enable the inputs using the UI. Then once satisfied, use this configured app (the modified setting must be in the $SPLUNK_HOME/etc/apps/appname/local/ folder if you want to check)

If you have a large number of Unix forwarders to monitor, you may want to use the deployment-server to deploy the preconfigured app at once.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...