Splunk® Enterprise

Updating Splunk Enterprise Instances

Use forwarder management to manage clients

You can use forwarder management to edit client mappings and view client status. See Forwarder management overview for more information.

Edit client mapping

To change the client mapping for a server class:

1. Go to the Server Classes \ Groups tab, where you'll see a list of all server classes.

2. Find the server class whose client mapping you want to change. Select the three dots (Threedots.png) in the last column for that server class.

3. Select the Edit agent assignment option. This takes you to the Edit agents assigned page, with the filter fields at the top: Include, Exclude, and Filter by Machine Type.

4. Edit the set of filters. For information on filters, see "Set up client filters".

5. Click Save.

If changing a filter results in a client getting unmapped from the server class, any previously downloaded deployment apps remain on the client but they will no longer get updated by the deployment server.

View client status

To view the status of a particular client, go to the Forwarders tab, where you'll see a list of all clients. At the top of the list are various options for filtering the list.

The list provides information on each client, including its host name, client name, IP address, machine type, how many apps have been deployed to it, and the last time it contacted the deployment server.

From the Forwarders tab, you can also manipulate the list of columns in the array to display different information about your forwarders. To do so, select the gear icon (Gear2.png) in the last column of the array.

Last modified on 10 December, 2024
Use forwarder management to manage apps   Use serverclass.conf to define server classes

This documentation applies to the following versions of Splunk® Enterprise: 9.4.0


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters