Splunk Enterprise

Splunk Architecture, How do we know we need how many Search Heads and Indexers.

Rocky31
Path Finder

We have like 5 S.H and 7 Indexers, how i know these numbers, some environments have 10 indexers and more SH, how we will know we need that number,

If anyone understood my question and answers me i will be very thankful to you.

0 Karma
1 Solution

asimagu
Builder

Feel free to play with this tool: https://splunk-sizing.appspot.com/

Besides that, answering your question about your need is not a simple task as it may require a full architecture analysis for the ideal solution

View solution in original post

0 Karma

jcrabb_splunk
Splunk Employee
Splunk Employee

We have a document that can provide general guidance based on our Reference Hardware:

Jacob
Sr. Technical Support Engineer

adonio
Ultra Champion

can you kindly elaborate?
how much data do you index every day? how many users do you have? how many concurrent searches? are your indexers clustered? are your search heads clustered?

Rocky31
Path Finder

Thank for your response, here i want to know how we will figure out, how many SH, indexers we required for our environment. PLEASE TRY TO UNDERSTAND I AM VERY NEW TO THIS TOOL.

0 Karma

asimagu
Builder

Feel free to play with this tool: https://splunk-sizing.appspot.com/

Besides that, answering your question about your need is not a simple task as it may require a full architecture analysis for the ideal solution

0 Karma
Get Updates on the Splunk Community!

What's New in Splunk Enterprise 9.4: Features to Power Your Digital Resilience

Hey Splunky People! We are excited to share the latest updates in Splunk Enterprise 9.4. In this release we ...

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

SignalFlow: What? Why? How?

What is SignalFlow? Splunk Observability Cloud’s analytics engine, SignalFlow, opens up a world of in-depth ...