Add Splunk Enterprise instances to the Monitoring Console
This topic is a step in the process of setting up the monitoring console for a distributed Splunk Enterprise deployment.
The monitoring console is a Splunk Enterprise instance that functions as a search head. It runs searches across other instances to gather information from those instances. However, for it to gather information, you must add those instances as search peers of the search head.
You must add each instance that you want to monitor to the monitoring console as a search peer, regardless of the server role, with the exception of indexers that are part of an indexer cluster.
To add Splunk Enterprise instances as search peers to the monitoring console:
- Log into the instance on which you want to configure the monitoring console.
- In Splunk Web, click Settings > Distributed search > Search peers.
- Click New.
- Fill in the requested fields, and click Save.
- Repeat steps 3 and 4 for each search head, deployment server, license manager, non-clustered indexer, and clustered search head. Do not add clustered indexers. If you are monitoring an indexer cluster and you are hosting the monitoring console on an instance other than the cluster manager, you must add the cluster manager as a search peer and configure the monitoring console instance as a search-head in that cluster.
To continue setting up the monitoring console on a distributed deployment, see Configure Monitoring Console in distributed mode.
Set cluster labels
Configure Monitoring Console in standalone mode
This documentation applies to the following versions of Splunk® Enterprise: 8.1.0, 8.1.1, 8.1.2, 8.1.3, 8.1.4, 8.1.5, 8.1.6, 8.2.0, 8.2.1, 8.2.2