![splunk enterprise architecture splunk enterprise architecture](https://docplayer.net/docs-images/101/150877041/images/18-0.jpg)
TerminologyĪ Splunk Enterprise instance that forwards data to another Splunk Enterprise instance, such as an indexer or another forwarder, or to a third-party systemĪ Splunk Enterprise instance that indexes data, transforming raw data into events and placing the results into an index. This paper includes the following terminologies. This solution is intended for IT administrators, Splunk architects, virtualization and storage architects involved in planning, architecting and administering a virtualized Splunk workload on VMware vSAN. Demonstrate how high availability features of vSAN and Splunk are used to provide resilient solution.Provide details on how vSAN is flexible in providing scalability along with linear performance increase.Showcase how VMware IT successfully runs their critical Splunk workload on VMware vSAN.This reference architecture in this paper: as a platform for security operations to run large data analytics for real-time forensics and investigations.
![splunk enterprise architecture splunk enterprise architecture](https://static.packt-cdn.com/products/9781785884351/graphics/B05205_01_01.jpg)
Splunk enterprise architecture software#
Splunk software helps to create hidden value from ever growing Machine Data. The traditional approach of using physical servers for server deployment may be an option but not smart enough considering the benefits of virtualization. This section covers the business case, solution overview, key results, audience, and terminology.