Knowledge Management

vSphere Logs : How could I benefit from Indexer Discovery and Load Balancing?

ahmad127
New Member

So recently, I migrated from a standalone instance, to a clustered enviroment. Everything is working well, but there's this one thing, I have a vSphere server where it's previously configured to send data to splunk, where we just specify the IP for the syslog server (in my case splunk) and the data arrives there. Now, So, , but I need it to forward this data using load balancing and Indexer discovery features, to forward data to different peers rather than 1 indexer. What's the best way to keep this happening - are there any ideas ? I was thinking of deploying another lightweight syslog server, which resends the vSphere logs to a splunk forwarder, where I can configure it for Load Balancing and Indexer Dsicovery, to resend data to splunk.

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...