- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Has any great person here written a Back up / DR for Splunk ES? Any guidance is much appreciated.
SamHTexas
Builder
07-11-2021
03:22 PM
I have Indexer clustering, SH clustering in a distributed environment.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
lkutch_splunk

Splunk Employee
07-12-2021
09:02 AM
For the ES portion of things, also consider this:
https://docs.splunk.com/Documentation/ES/6.6.0/Install/InstallEnterpriseSecuritySHC#Back_up_and_rest...
Let me know if that helps.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
codebuilder
Influencer
07-12-2021
08:29 AM
This is a complex topic and you should really engage Splunk support for guidance on how to implement these strategies.
With that said, one option for DR is to implement multi-site clustering.
https://docs.splunk.com/Documentation/Splunk/8.2.1/Indexer/Multisitearchitecture
----
An upvote would be appreciated and Accept Solution if it helps!
An upvote would be appreciated and Accept Solution if it helps!
