Knowledge Management

vSphere Logs : How could I benefit from Indexer Discovery and Load Balancing?

ahmad127
New Member

So recently, I migrated from a standalone instance, to a clustered enviroment. Everything is working well, but there's this one thing, I have a vSphere server where it's previously configured to send data to splunk, where we just specify the IP for the syslog server (in my case splunk) and the data arrives there. Now, So, , but I need it to forward this data using load balancing and Indexer discovery features, to forward data to different peers rather than 1 indexer. What's the best way to keep this happening - are there any ideas ? I was thinking of deploying another lightweight syslog server, which resends the vSphere logs to a splunk forwarder, where I can configure it for Load Balancing and Indexer Dsicovery, to resend data to splunk.

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Technical Workshop Series: Splunk Data Management and SPL2 | Register here!

Hey, Splunk Community! Ready to take your data management skills to the next level? Join us for a 3-part ...

Spotting Financial Fraud in the Haystack: A Guide to Behavioral Analytics with Splunk

In today's digital financial ecosystem, security teams face an unprecedented challenge. The sheer volume of ...

Solve Problems Faster with New, Smarter AI and Integrations in Splunk Observability

Solve Problems Faster with New, Smarter AI and Integrations in Splunk Observability As businesses scale ...