Getting Data In

How to change forwarder configuration to load balance across the indexers

RAYUDU_NARA
Explorer

We are planning to increasing Splunk indexers from 1 to 2. So, after this implementation, what are all the necessary changes we need to do at forwarder level.

0 Karma

skalliger
SplunkTrust
SplunkTrust

Hi,

there are a couple of threads out there about this topic, even the splunk docs describe it here (forwarder load balancing) and here (indexer discovery).
You simply change your Universal/Heavy Forwarder's outputs.conf to one of those options.

Skalli

0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...