Splunk Search

Multi indexer distributed search

mcgrathd
New Member

I would like to index data separately using two indexers and have distributed search capability. I read here ( http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Whatisdistributedsearch
) in the documentation that a unique license key is required for each indexer for distributed searches. I am using 4.3 and would rather use a license master with an enterprise license utilized by my indexers. Is the documentation correct for version 4.3?

0 Karma

Brian_Osburn
Builder

That documentation doesn't seem correct. It doesn't need a unique key (it did pre-license master).

I'll bring it to someone's attention.

Thanks!

Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...