Hi,
I am building a VM dedicated Search head( Windows server 2008 R2). It is not going to have data input, So should I Install the Splunk to "run Splunk as local user" or "as another"?
Thanks,
M
Hi MarMoh
if possible you should run Splunk as dedicated user, best would be one without password expiry and other restrictions to avoid troubles. Remember the account still needs some special permissions like 'create service'.
You can also install it to use the 'local' service account.
hope this helps....
cheers, MuS