Hi,
I have set up a Splunk architecture composed of two indexers and one Splunk master node. Nevertheless, since the indexers are linked to the master node, the UI access is very slow and the version of both indexers seems to be Splunk 4.0 wheras I installed the latest Splunk's version on both of them.
Do you have any ides what's happening ?
Tahnks you for your advice.
Alex
What is your forwarded data volume bandwidth? You should install a dedicated Search Head.