...oldToFrozenscript.py
This will archive data to a particular directory that we mention in indexes.conf.
However it faces problems in cases of clustered architecture due to same multiple buckets being c...
We are getting a bunch of the following errors as our AWS EC2 indexers try to archive buckets to S3 withHadoopDataRoll.
How can we fix them or will they get retried and we can ignore them, if s...
I am running Splunk Enterprise 8.0.6 and have HadoopDataRoll configured, using Hadoop 3.2.1 with Java 1.8.0_282-b08. I have a virtual index configured to archive an index to AWS S3. The HadoopData...
Recently I have archived buckets of _internal index(older than 90 days) from one site of splunk indexers to Hadoop cluster using https://docs.splunk.com/Documentation/Splunk/8.0.3/Indexer/Archiving...
I have an indexer cluster with a replication factor of 3. If I were to implement HadoopDataRoll, would only one copy of each event be archived to Hadoop at freeze time, or would all three bucket c...
Hi,
I'm searching for the documentation for the new 6.5 hadoopdataroll feature, and unable to find it. Can someone point me to it? Or where it's setup within Splunk? Nothing obvious stands o...
Hi All,
I am using splunk enterprise version 7.1. I am looking for a way to backup the splunk indexdata into Amazon S3 bucket.
can someone suggest a way to achieve this.
I assume using h...
...nvokes archiving script once rolled to frozen
coldToFrozenScript = *Path to script that archives data to external storage"
[anotherindex]
homePath = volume:primary/anotherindex/db
coldPath = v...
Hi All,
My hot bucket is not rolling when its span has exceeded maxhotspansecs. Could you please provide assistance?
We are currently using a Splunk index, purely for dataarchiving purposes with...