I would like to run accelerated reports on one search head and access the results from many other search heads. I can't pool the search heads. My questions are (1) Is this possible, and (2) How do I do it.
I've found several posts asking similar questions, but none with good answers. It might be nice if we could get an authoritative answer from a Splunk employee on this, since it doesn't seem to be in the documentation.