Install the Splunk Add-on for OPC in a distributed deployment
Follow these steps to install the Splunk Add-on for OPC in a distributed deployment of Splunk Enterprise.
- Deploy a heavy forwarder.
- Install dependencies.
- Install the Splunk Add-on for OPC on your heavy forwarder.
- (Optional) Install the Splunk Add-on for OPC on your indexers.
The Splunk Add-on for OPC does not need to be installed on search heads.
Deploy a heavy forwarder
Install Splunk Enterprise on a server under your control and configure it as a heavy forwarder. In most deployments, this instance hosts the data ingestion management components of the add-on as well as your HTTP event collector receiver.
- Install a full Splunk Enterprise instance on a server under your control. See Installation instructions in the Splunk Enterprise Installation Manual.
- If you have not already done so, configure your indexers or indexer cluster to receive data from forwarders.
- If you have one or more unclustered indexers not yet set up as receivers, see Enable a receiver in Forwarding Data in the Splunk Enterprise documentation.
- If you have an indexer cluster, see Configure the peer nodes to receive data from forwarders in Managing Indexers and Clusters of Indexers in the Splunk Enterprise documentation.
- Configure your Splunk Enterprise instance as a heavy forwarder by instructing it to forward data to your receivers.
- If you are forwarding data to one or more unclustered indexes, see Set up forwarding in Forwarding Data in the Splunk Enterprise documentation.
- If you are forwarding data to an indexer cluster, see Configure the forwarders to use indexer discovery in Managing Indexers and Clusters of Indexers in the Splunk Enterprise documentation.
Next: Install dependencies
Install dependencies
Install the required dependencies on your heavy forwarder. See Required dependencies for your data ingestion management node.
Install the Splunk Add-on for OPC on your heavy forwarder
Follow these steps to install the add-on on the heavy forwarder:
- Download the Splunk Add-on for OPC from Splunkbase.
- Log in to Splunk Enterprise as an administrator.
- From the Splunk Web home screen, click the gear icon next to Apps.
- Click Install app from file.
- Locate the downloaded file and click Upload.
- Restart Splunk Enterprise when prompted.
Next: Set up the Splunk Add-on for OPC, or, if you want to handle data ingestion separately from data ingestion management, Install the Splunk Add-on for OPC on your indexers.
Install the Splunk Add-on for OPC on your indexers
This step is optional.
If you want to handle data ingestion separately from data ingestion management, you can configure your unclustered indexers to be the HTTP event collector receivers of your OPC data. In this case, install the Splunk Add-on for OPC to your indexers. Otherwise, skip this step and go next to Set up the Splunk Add-on for OPC.
Follow these steps to install the add-on on to each unclustered indexer in your deployment.
- Download the Splunk Add-on for OPC from Splunkbase.
- Log in to the indexer as an administrator.
- From the Splunk Web home screen, click the gear icon next to Apps.
- Click Install app from file.
- Locate the downloaded file and click Upload.
- Restart Splunk Enterprise when prompted.
- Log in to the indexer as an administrator.
- From the Splunk Web home screen, click the gear icon next to Apps.
- Scroll down to find Splunk Add-on for OPC, and then click Edit properties.
- Change the radio button selection next to "Visible" to No. This prevents the data ingestion management components from being visible on your indexers. All data ingestion management occurs on your heavy forwarder.
- Click Save.
Install the Splunk Add-on for OPC in a single-instance deployment | Set up the Splunk Add-on for OPC |
This documentation applies to the following versions of Splunk Add-on for OPC (Legacy): 1.0.0, 1.0.1
Feedback submitted, thanks!