...oldToFrozenscript.py
This will archive data to a particular directory that we mention in indexes.conf.
However it faces problems in cases of clustered architecture due to same multiple buckets being c...
We are getting a bunch of the following errors as our AWS EC2 indexers try to archive buckets to S3 withHadoopDataRoll.
How can we fix them or will they get retried and we can ignore them, if s...
I am running Splunk Enterprise 8.0.6 and have HadoopDataRoll configured, using Hadoop 3.2.1 with Java 1.8.0_282-b08. I have a virtual index configured to archive an index to AWS S3. The HadoopData...
Recently I have archived buckets of _internal index(older than 90 days) from one site of splunk indexers to Hadoop cluster using https://docs.splunk.com/Documentation/Splunk/8.0.3/Indexer/Archiving...
Hi,
I'm searching for the documentation for the new 6.5 hadoopdataroll feature, and unable to find it. Can someone point me to it? Or where it's setup within Splunk? Nothing obvious stands o...
I have an indexer cluster with a replication factor of 3. If I were to implement HadoopDataRoll, would only one copy of each event be archived to Hadoop at freeze time, or would all three bucket c...
We currently have our Splunk environment running on Server 2012. I've built out an Hadoop cluster in *NIX and currently building a *NIX box for Hadoop Analytics. Will I be able to rolldata from o...
Hi All,
I am using splunk enterprise version 7.1. I am looking for a way to backup the splunk indexdata into Amazon S3 bucket.
can someone suggest a way to achieve this.
I assume using h...
...and send archived data to Hadoop from Indexes.
I can achieve this via both Splunk Hadoop Connect and Hunk, but my doubt is what's the difference between these two w.r.t licensing, other than t...