Splunk Enterprise

Splunk multisite firewall requirements

jpillai
Path Finder

We are trying to setup a new cluster and move from Splunk single site to multisite. Could someone help with all the ports that needs to be allowed between the two sites for this to function properly?

Labels (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Make sure the indexers in all sites can talk to the CM on port 8089 and to each other on the replication port (default is 8080).  That's in addition to the normal ports (9997, etc.).

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk App for Anomaly Detection End of Life Announcment

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...