deployment

noun

A set of distributed Splunk instances, working in concert. A typical deployment scenario consists of a number of forwarders and one or more receivers, with the forwarders sending data to the receivers to index and search. Distributed search is another type of Splunk deployment. A single deployment scenario might combine both forwarding and distributed search.

Splunk simplifies the management of deployments with its deployment server technology, in which a single Splunk instance (the deployment server) distributes content and configuration files to a large number of deployed instances (the deployment clients).

For more information

In the Distributed Deployment manual:

In the Installation manual:

configuration

configuration file

event processing

character set encoding

segmentation

segment

timestamping

timestamp, timezone offset

default field extraction

host, source, source type, punct


archiving

retention time