Splunk Enterprise Security

Can multiple search head clusters connected to the same index use port 8080?

spectrum2035
Explorer

Hello,

Currently we have Single Search Head Cluster with Enterprise Security and single Indexer Cluster. As part of the platform uplift, we would like to introduce a new Search Head Cluster (with no ES) and it will be connected to the same Indexer Cluster.

Currently we are using port 8080 for the SHC communication, can we use the same port for the new SHC as well?
All (old and new SHC) are on the same subnet.

0 Karma

amitm05
Builder

yes you can

spectrum2035
Explorer

Thanks Amitm05. I will test the deployment and will accept your answer.

0 Karma

amitm05
Builder

Alright. Sure

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...