Documentation: 3.3.1
Print Version Contents
This page last updated: 12/23/08 08:12am

Installation

How long does it take to install Splunk?

Splunk installs in minutes using standard rpm, pkg, dmg, deb and other installers. It doesn't require any external packages and installs cleanly into its own directory. Setting up live data inputs is easy via either the Splunk Web or commandline interfaces.

What is Splunk's impact on production systems, applications and networks? What is its memory footprint?

Splunk doesn't have to be deployed on production systems if there is existing network logging such as via syslog. If you do choose to install Splunk on production servers to locally read logfiles, the CPU and network footprint is the same as if you were tailing the same files and piping the output to netcat. The Splunk Server's memory footprint for just tailing files and forwarding them over the network is less than 30 MB of resident memory.

Does Splunk perform better with multiple CPUs or multiple Cores?

We expect Splunk to perform better with more cores because the cache is shared; hence, it is closer if two threads use the same memory.

Which platforms does Splunk run on?

Splunk should work on any Linux distro with a version 2.4+ kernel (x86) as well as FreeBSD?/x86, Solaris (Sparc and x86) and Mac OS X (PPC and Intel). But Splunk can process data from any networked device with any operating system, not just from servers running Splunk. See the main documentation for a complete list of system requirements.

Does Splunk need agents?

No. Splunk can process and index any format of log data without special adapters to interpret each format. It can access data remotely via syslog, SNMP, or by watching files mirrored via rsync or rotated to a central log host with scp or ftp. You can choose to deploy Splunk to access logfiles in real time on production hosts if you have datasources that don't support remote logging, but this is the same Splunk software package and not a special agent.

Previous: Company Background    |    Next: Accessing data

Comments

No comments have been submitted.

Log in to comment.