Splunk® Enterprise

Managing Indexers and Clusters of Indexers

Download manual as PDF

Splunk Enterprise version 5.0 reached its End of Life on December 1, 2017. Please see the migration information.
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

View the search head dashboard

This dashboard provides detailed information on the status of the search head.

Access the dashboard

To access the dashboard:

1. On the search head, click Manager in Splunk Web.

2. In the Distributed Environment group, click Clustering.

You can only view this dashboard on a Splunk instance that has already been enabled as a cluster search head.

View the dashboard

Here's how the search head dashboard looks:

Search head dashboard.png

The dashboard provides information on the search head's status:

  • Master Location. The master node's IP address and port number.
  • Generation ID. The current generation ID.The search head and the peer nodes use this information to determine which bucket copies to search across. For information about generations, see "Generations".
  • Generation Peers. That is, the set of search peers for the current generation. The peers are identified here by their GUIDs, specified in each peer's $SPLUNK_HOME/etc/instance.cfg file.

To reconfigure the search head, click the Configure button at the top of the dashboard.

View information on search peers

You can also view information on the search peers (identical, in clustering, to the set of peer nodes) from the search head's Distributed Search page in Manager:

1. On the search head, click Manager in Splunk Web.

2. In the Deployment section, click Distributed search.

3. Click Search peers to view the set of search peers.

Warning: Do not use the Distributed Search page in Manager to change your search head configuration or add peers. For information on how to configure a clustered search head correctly, see "Configure the search head".

View the peer dashboard
Update common peer configurations and apps

This documentation applies to the following versions of Splunk® Enterprise: 5.0, 5.0.1, 5.0.2, 5.0.3, 5.0.4, 5.0.5, 5.0.6, 5.0.7, 5.0.8, 5.0.9, 5.0.10, 5.0.11, 5.0.12, 5.0.13, 5.0.14, 5.0.15, 5.0.16, 5.0.17, 5.0.18

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters