Basic concepts for advanced users
To understand how a cluster functions, you need to be familiar with a few concepts:
- Replication factor. This specifies how many copies of the data the cluster maintains. It influences the cluster's resiliency, its ability to withstand multiple node failures.
- Search factor. This specifies how many copies of the data are searchable. It influences how quickly a cluster can recover from a downed node.
- Buckets. These are the basic storage containers for indexes. They correspond to subdirectories in the indexer's database.
- Cluster states. These states describe the health of the cluster.
You can find an overview to these concepts in the introductory topic on cluster architecture, "Basic cluster architecture". Topics in the chapter you're now reading provide more detail.
Remove excess bucket copies
This documentation applies to the following versions of Splunk® Enterprise: 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.0.12, 6.0.13, 6.0.14, 6.0.15