...M, install a fresh SplunkEnterprise application and move all incoming data to this new system and bypass the old indexer. With the replication going on between the indexers in this cluster, can I s...
...vent data from the Splunk Add-on for Microsoft Windows. What's the best way to migrate my Windows performance monitoring from event-based to metrics-based data?
Does anyone have any good resources about indexes and index management?
Before I set up a bunch of indexes, I'd like to know more about the howindexes impact my deployment.
...uestions,
Q1: Can I install the forwarder, indexer and search head together on one Linux box? I am not worried about the performance, I just want to see the dataindexed and displayed properly.
Q...
...rom splunk and NOT from source, all future data which will be onboarded, will be sent to both splunk and hadoop.
Splunk Version : 6.5.2
Cloudera Enterprise 5.10.1 (hadoop-2.6.0)
Kerberos S...
We've been having severe Splunkperformance issues on the following system:
Windows 2008 R2 Enterprise 64 with a 2 CPU Xeon E5405 2,0Ghz with 12GB RAM
The relevant index has only 1Gb of size a...
...n intelligent portion of the data?
3. If it's returned from only the origination site, I guess that means that it lacks a performance boost it might get if that search load were balanced over the index...
...ssigned)
Issue:
I'm currently getting bombarded with over 65k events every few seconds that is related to performancedata for Memory/CPU, this data comes into our Indexer and is labeled as source=b...
...mon2csv.sh and nmon_cleaner.sh to look for version 2.9 instead (arbitrary higher version number). Everything works fine using pearl, except that i can't get config data. EDIT: since i wiped all data from t...