You can look at the Splunk Validated Architectures, too, but pasting your same request again without adding any new information for the community to respond to is not going to produce useful results. If you are starting from the very beginning, there are too many questions to answer here. You should take some Splunk education classes and read the relevant documentation that people have suggested. That should help you ask more focused questions that the community might be able to help you with. You can also work with professional services, as johnmvang said, to get some expert advice that is customized for your situation.
... View more