Hi Folks,
Please note that I am new to splunk,
I have a question what is the difference between full stack splunk and splunk enterprise
Would be appreciate your kind support you
The best terms to use here are either "server", or "deployment". I would avoid the term "stack", as that does not translate well to the typical web developer definition of that term. The below should help to distinguish further:
Splunk Server | Generic term to indicate any host (computer) that provides a Splunk service |
Splunk Deployment | Collective term referring to one or more Splunk servers that satisfy the various roles needed to provide a Splunk service. |
See also: cluster, tier, search tier, search peer, index tier, role
Ref:
The best terms to use here are either "server", or "deployment". I would avoid the term "stack", as that does not translate well to the typical web developer definition of that term. The below should help to distinguish further:
Splunk Server | Generic term to indicate any host (computer) that provides a Splunk service |
Splunk Deployment | Collective term referring to one or more Splunk servers that satisfy the various roles needed to provide a Splunk service. |
See also: cluster, tier, search tier, search peer, index tier, role
Ref:
Hi gcusello,
Hi @Shakeer_Spl ,
as I said, there isn't a version of Splunk Full Stack, there are two versions of Splunk on premise:
The full Stack is only Splunk Enterprise.
For both the products there are many version (the last released is 9.4.3) and you can find it at https://www.splunk.com/en_us/download/splunk-enterprise.html .
let us know if we can help you more, or, please, accept one answer for the other people of Community.
Ciao and happy splunking
Giuseppe
P.S.: Karma Points are appreciated by all the contributors 😉
It's hard to say what you mean by "full stack".
Splunk as a company has many different products/services. Typically when talking about "Splunk" as a product it's implied that we're talking about environment of Splunk Enterprise or Splunk Free (which is the same Splunk Enterprise binary but with a limited Splunk Free license applied) instance(s) and Splunk Universal Forwarders
Splunk Enterprise can be configured, depending on the needed role, as indexer, search-head, heavy forwarder, deployment server, shc deployer, cluster manager. But these are all instances of Splunk Enterprise servers.
Hi @Shakeer_Spl,
Splunk on premise has two main products (there are many others but for this scope two products):
The second is a light agent that can be used only to input data and is usually installed on the target servers.
The second is a full stack version of the product that is usually installed on one or more dedicated servers, it can be used for all roles except agent: Indexer, Search Head, Heavy Forwarder, Master Node, License master, Deployer.
What is your requirement?
Ciao.
Giuseppe
Hi @Shakeer_Spl,
Splunk sells it's main solution in two ways:
Splunk Enterprise is the on-premise version of Splunk Platform, differentiated by Splunk Cloud.
Splunk Enterprise can have many roles, but it's used always the same software version with the only exception of Splunk Universal Forwarder.
When you speak of full stack Splunk, probably you want to differentiate Splunk Heavy Forwarder from Splunk Universal Forwarder that are two different products and distributions:
Ciao.
Giuseppe