Splunk Cloud Platform

Installing Splunk Add-on for VMware ESXi Logs on Heavy Forwarder

ks17
New Member

Hi Team,

Can we install data collector node on heavy forwarder? what are the care need to be taken on this ?
What are the other services can be installed on the heavy forwarder ? 

 

0 Karma

marnall
Builder

Are you referring to the "Splunk Add-on for VMware"? I believe the "Splunk Add-on for VMware ESXi Logs" only provides Splunk knowledge objects like field extractions.

If so, then yes you can use the heavy forwarder as a data collector node. It defaults to using 10 workers which can be adjusted depending on how much load you expect and how beefy your machine is. I would recommend monitoring the CPU and RAM usage on your heavy forwarder after activating it, to ensure you are within limits.

If you have extra CPU and RAM, then you can also install other apps and services on the heavy forwarder.

0 Karma
Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...