All Apps and Add-ons

Splunk App for AWS & Splunk Add-On for AWS in a Clustered/Distributed deployment.

aknsun
Path Finder

Hi,

There have been a few questions on this before, with some conflicting views on deploying the Splunk Add-On for AWS in a clustered/distributed environment,

  1. The Splunk App for AWS is installed on the Search Heads. No doubts here.
  2. The Splunk Add-On for AWS: If this is being installed and configured on a Heavy Forwarder, is there a need for the Add-On to be installed(but not configured) on the Search Heads? Some posts state that it's only required in one place ie Heavy Forwarder, while others points to it being required on the Search Head as well (for search time logic, field extractions etc), in addition to it being configured on the Heavy Forwarder . (https://answers.splunk.com/answers/213687/where-in-our-splunk-environment-do-we-install-the.html). Can someone who has this deployed and working confirm?

Thanks,

AKN

Tags (1)
0 Karma

aknsun
Path Finder

Hope someone who has got this working can confirm.

Thanks.

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...