Hi, I just installed a indexcluster and i already know that i shoud place Apps to $SPLUNK_HOME/etc/master-apps/ directoty at my manager node to distribute it accross all indexers but i have 2 q...
As per subject,
when accessing my cluster master -> clustering panel, in Indexes tab I'm only shown _audit and _internal indexes, while for sure I have another one (index=cisco) with data in i...
Hi All,
I am running a cluster of 3 nodes - indexers, with one among 3 as master. When i log on theClustering dashboard of both the peer nodes, i cannot see the peer dashboard as decribed in the...
...un amongst multiple SH without causing conflicts?
ENVIRONMENT: Search Head Clusterwith 3 members; one standalone search head; and 10 indexer peers (no clustering). Our goal was to install the P...
I first time installing ES apps on Splunk Enterprise 7.2.1 with ES version 5.2.0.
Splunk Environment:-
1 SH standalone
3 Indexer in Cluster mode
Installation of ES apps
1.Installation o...
I currently have an Indexer/Multiple Search Head cluster, but due to some regional requirements we are looking at smaller replicas of the environment in other regions.
We need to have certain configur...
I need details about what to validate after the upgrade so I know it was successful. How can I tell that everything got upgraded correctly, and that the system is healthy and ready to go?
I need details about what to check before I upgrade so I know if my deployment is ready to upgrade. What do I monitor, and how do I benchmark system health before the upgrade?
...nstallation with a machine withindexer and SH role, so I need to remove all activities of the SH and move them to the new machine. Is there any documentation on performing such task? The SH also contains E...