We just got SplunkEnterprise up and running, and I'd like some tips on how to tell if it's healthy. Can you get me started, and point me to some resources?
I need details about what to check before I upgrade so I know if my deployment is ready to upgrade. What do I monitor, and how do I benchmark system health before the upgrade?
Hi,
For a very large environment what would be the license requirement? How many Search Heads, Indexers, Forwarders required and what are all the other components required?
I'm seeing the error below under messages in my Splunkenterprise console:
Missing or malformed messages.conf stanza for TCPOUT:FORWARDING_BLOCKED_Indexer IP ADDress_default-autolb-group DC-Host N...