Splunk Enterprise Security

Does Enterprise Security work just fine with a search head cluster?

danielbb
Motivator

We read someplace that ES and the SH cluster might be tricky.

It is right? or ES works naturally with the SH cluster?

0 Karma

skalliger
Motivator

Hi,

that depends what version you are referring to.

Starting with Enterprise Security 5.3.0, the installer of ES has changed, look into the Release Notes for further information.

In the past, you needed a staging server for ES in a SHC. Now you can use a deployer for initial installing and upgrades of ES.

Skalli

danielbb
Motivator

Looks great -

alt text

0 Karma
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.


Introducing Unified TDIR with the New Enterprise Security 8.2

Read the blog
Get Updates on the Splunk Community!

Super Optimize your Splunk Stats Searches: Unlocking the Power of tstats, TERM, and ...

By Martin Hettervik, Senior Consultant and Team Leader at Accelerate at Iver, Splunk MVPThe stats command is ...

How Splunk Observability Cloud Prevented a Major Payment Crisis in Minutes

Your bank's payment processing system is humming along during a busy afternoon, handling millions in hourly ...

Index This | What’s a riddle wrapped in an enigma?

September 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...