All Apps and Add-ons

Where do I deploy the ta-forwarderquery app

msudhindra
Path Finder

Hi,

The app looks very interesting.
We have a central deployment server that pushes out all the apps, to all Splunk compoenents.

Can you please give me some guidance on where I push this app out to - Indexers, forwarders or Search heads or all 3 ?

Thanks,
Madan Sudhindra

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

The description on the app's page says this:

Usually you would install it on the deployment server and have a firewall rule to open port 8089 on all forwarders etc from this server.

https://splunkbase.splunk.com/app/2775/

From your list of three choices the app would be most appropriate on a search head and useless on an indexer or forwarder.

View solution in original post

0 Karma

dominiquevocat
SplunkTrust
SplunkTrust

I have it on the deploy server. Any searchhead will do provided you have firewall rules that allow you to connect to the rest port of the forwarder (8089 by default but you can change it in the .conf).

Hope this helps.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

The description on the app's page says this:

Usually you would install it on the deployment server and have a firewall rule to open port 8089 on all forwarders etc from this server.

https://splunkbase.splunk.com/app/2775/

From your list of three choices the app would be most appropriate on a search head and useless on an indexer or forwarder.

0 Karma

msudhindra
Path Finder

Thank you @martin_mueller and @dominiquevocat

I will give this a try and let you know how it works out

Thanks,
Madan

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...