We are planning for a trial with Splunk Cloud for our Virtual infrastructure, VMware. Could you please assist me with the following questions?
Do I still need to configure individual instances of indexer and search head on my on-premise environment even after deployment of Data Collector Nodes?
After configuration of DCN -VMware addon OVA; would that be enough to forward host syslog data?
Are there any other additional instances that need to be configured in order to forward the vcenter and esxi data to Splunk?
I would really appreciate if you could assist me in the right direction.
Thanks
Nikhil Chhetri
... View more