Splunk Enterprise

indexer and search head on the same server

jiaqya
Builder

is it possible to run both indexer and search head on the same splunk server.
i kind of have only one server in one of my test environments, so was wondering if this was an option as i am having dbconnect on that server.

im unable to add the search peer as itself..

Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Yes, this is common in small environments and test/dev systems. Install a single instance of Splunk and it will function as both search head and indexer. There is no need to configure distributed search in this case.

---
If this reply helps you, Karma would be appreciated.
0 Karma

jiaqya
Builder

Thanks Galloway, but i am not sure why my dbconnect is able to see data in the splunk db connect app ,but its not indexing it then..
any ideas...

0 Karma

jiaqya
Builder

Strange, its all working after i reinstalled it..

0 Karma

richgalloway
SplunkTrust
SplunkTrust

@jiaqya If your problem is resolved, please accept the answer to help future readers.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...