Splunk Enterprise

Remote UniveralForwarder deployment-client setting

KwonTaeHoon
Path Finder

Hello

The deployment-client setting is required for the remote Universal Forwarder.

And then I want to restart Universal Forwarder.
I know the ID/PW.
Can I set it up in My Deployment-Server?

 

Labels (1)
0 Karma

SanjayReddy
SplunkTrust
SplunkTrust

Hi @KwonTaeHoon 

For settingup deployment client for UF, for first time setup you need to configure deploymentclient.conf
on UF , Once UF is able to connect to deployment server, then using  app settings you can restart the forwarder, whenever you push apps from  from deployment server 

best way to configure deplotmentclient.conf on UF

create a app ex: deplotmentclient--->local--->deploymentclient.conf

add following contents inside deploymentclient.conf

[target-broker:deploymentServer]
targetUri= https://deploymentserverip:8089

 

place deplotmentclient app in UF in $SPLUNK_HOME/etc/apps and  $SPLUNK_HOME/etc/deployment-apps/ on deployment server for future managmenet 

and restart the forwader.

setting to enable the restart of UF

SanjayReddy_1-1674662183500.png

you can refer to https://docs.splunk.com/Documentation/Splunk/9.0.3/Updating/Aboutdeploymentserver for more information on deplotment server and client 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

    Thursday, June 25, 2026  |  11AM PDT / 2PM EDT  Duration: 1 Hour (Includes live Q&A) Register to ...

Analytics Workspace deprecation

As of Splunk Cloud Platform 10.4.2604 and Splunk Enterprise 10.4, Analytics Workspace is now deprecated. ...

Splunk Developer Day Recap: Building, Publishing, and Growing on the Splunk Platform

Splunk Developer Day brought the Splunk developer community together for a practical look at what it means to ...