Knowledge Management

[SmartStore] Can I get key configuration for Smart Store?

rbal_splunk
Splunk Employee
Splunk Employee

I am planning to setup SmartStore and was looking for Key configuration. Could you please share the Key configuration?

0 Karma

masonmorales
Influencer

As you're a Splunker, I'd encourage you to search our internal Confluence. You'll find several examples in there.

0 Karma

rbal_splunk
Splunk Employee
Splunk Employee

Implementing Enabling SmartStore

Volume Configuration:

indexes.conf

[volume:<volumne_name>]
storageType = remote
path = <scheme>/<remote-location-specifier>
remote.s3.endpoint = <URL of S3 API>
remote.s3.secret_key =
remote.s3.access_key = 

Index Configuration:
indexes.conf

  [index_name]
    homePath =
    coldPath = <path required ,but not used>
    remotePath = <volumn_name>/>index_name>
    maxGlobalDataSizeMB = 
    drozenTimePeriodInSecs = 

Note: You can have a mix of S2 and classic indexes on the same indexes

CacheManager Configuration

[cacahemanager]
max_cache_size = <MB pf cache size to use, where we start trigger eviction,default 0
eviction_padding = <MB of padding space,where minFreeDisk+padding starts trigger eviction, deafult 5GB
eviction_policy = lru
0 Karma

indreshdowjones
Explorer

could you please share sample configuration for smart store for the following files as well ? as

  • server.conf
  • limits.conf

as per documentation the key files are indexes.conf and server.conf
- limits.conf
https://docs.splunk.com/Documentation/Splunk/8.0.2/Indexer/ConfigureSmartStore

so can you please share ?

0 Karma

indreshdowjones
Explorer

Is there any sample configuration file for smart store ?
- indexes.conf
- server.conf
- limits.conf

0 Karma

bsrikanthreddy5
Path Finder

I am moving the existing environment Splunk 7.0 to Splunk 7.2.4 with smartstore. Can you please provide the all setting need to be set to default, disabled, ignored ...
Thanks in advance.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...