Splunk Search

Can Search Head Pooling be enabled at install time?

chris
Motivator

We would like to automate the installation of our search heads (we use puppet on a Solaris environment) is there an installation option to enable search head pooling when you install?

I'd prefer not to copy/move the files under $SPLUNK_HOME/etc/apps around if I do not have to.

Thanks for helping,

Chris

0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi chris

in Puppet you are able to run commands as part of the install/setup, therefore you can execute the splunk cli

splunk pooling enable <path_to_shared_storage>

as written in the docs

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi chris

in Puppet you are able to run commands as part of the install/setup, therefore you can execute the splunk cli

splunk pooling enable <path_to_shared_storage>

as written in the docs

chris
Motivator

That is more or less what we are doing. We copy server.conf and etc/users & etc/apps to the right place with puppet after the installation of the package. It felt a bit "unclean" and I thought that there might be an easier way. But this approach works so I guess it is ok.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...