Hello,
We recently created 5 new Splunk servers with Windows Server 2016 installed, our current deployment is, 2 indexers, 2 search heads, with a deployment server, is this still the ideal setup? I am new to Splunk so just want to make sure we are doing best practice.
Our current setup we have Enterprise Security and Core Splunk both on the search heads.
They all 24 GB of RAM and 6cpu and 6 sockets.
Eventually, I would like to migrate the old data to the new servers and would like to know is that something that should be done?
... View more