Splunk Enterprise

modify/update limits.conf on indexer cluster

warmup031
Explorer

Hello,

I have to update the $SPLUNK_HOME/etc/system/local/limits.conf of clustered indexer, with new parameters.

I'll have to create an app on deployment server to deploy it to indexers via masternode. In the app, do I need to create a limits.conf with all parameters already existing  on the indexers limits.conf + the new parameters to add, or do I have to put only the new parameters to add to the limits.conf ?

Thank you for your help

 

Labels (2)
Tags (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust
Your custom limits.conf file only needs your custom parameters (plus the relevant stanza name(s)).
---
If this reply helps you, Karma would be appreciated.

View solution in original post

0 Karma

richgalloway
SplunkTrust
SplunkTrust
Your custom limits.conf file only needs your custom parameters (plus the relevant stanza name(s)).
---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...