1 00:00:00,390 --> 00:00:01,180 To the real. 2 00:00:01,200 --> 00:00:02,370 I've created. 3 00:00:03,470 --> 00:00:10,880 For missions to understand how we are going to install Splunk, indexers, Splunk, search it, Splunk, 4 00:00:10,880 --> 00:00:16,910 heavy forwarder and Splunk deployment server, which we will be also using guest license master. 5 00:00:20,880 --> 00:00:29,640 Due to this tutorial, I've configured our credentials and created our application users and met all 6 00:00:29,640 --> 00:00:35,160 prerequisites of SELinux disabling PHP disabling firewall rules. 7 00:00:35,160 --> 00:00:41,640 All these have been taken care so that we can get right into our installation part. 8 00:00:42,550 --> 00:00:46,300 If you're not clear about the prerequisite, just go back a couple of. 9 00:00:47,060 --> 00:00:54,410 Tutorials where we are focused exclusively on the prerequisites of our Splunk installation. 10 00:00:56,950 --> 00:00:59,640 Let me log into one of the Splunk instances. 11 00:00:59,650 --> 00:01:01,090 This is our Splunk search. 12 00:01:03,780 --> 00:01:06,570 I've logged in by default as easy to user. 13 00:01:08,780 --> 00:01:11,900 I'll switch into privilege user. 14 00:01:14,780 --> 00:01:19,230 So this is the command to use it in Linux to switch into privileged user. 15 00:01:19,250 --> 00:01:27,500 Now root, as you can see here and this is our Splunk searcher, I've already downloaded the Splunk 16 00:01:27,500 --> 00:01:32,030 installation package, which is of the latest 662. 17 00:01:35,020 --> 00:01:44,590 Now let me show you how easy it is to install any package in Linux or how we are going to install our 18 00:01:44,590 --> 00:01:45,190 Splunk. 19 00:01:45,220 --> 00:01:47,950 All I'm doing is it's RPM. 20 00:01:47,980 --> 00:01:55,390 Read that package manager if and I for install hyphen v for verbose mode and if an edge for human readable 21 00:01:55,420 --> 00:01:57,700 output, I'll mention the file name. 22 00:01:58,750 --> 00:02:00,100 That we are going to install. 23 00:02:00,100 --> 00:02:02,810 That is our Splunk Enterprise package. 24 00:02:02,830 --> 00:02:04,210 Six six to. 25 00:02:05,840 --> 00:02:06,500 Enter. 26 00:02:08,490 --> 00:02:09,900 As it progresses. 27 00:02:11,290 --> 00:02:12,000 We'll see. 28 00:02:12,010 --> 00:02:14,620 The installation is almost done. 29 00:02:15,820 --> 00:02:21,550 You can consider since we have installed this package on a machine that was referred by us. 30 00:02:21,580 --> 00:02:24,010 Still, Splunk doesn't know that it is a search. 31 00:02:24,130 --> 00:02:25,450 We need to configure that. 32 00:02:25,480 --> 00:02:27,310 As of now, we can consider. 33 00:02:28,700 --> 00:02:31,280 One instance of Splunk is installed. 34 00:02:32,490 --> 00:02:34,440 Let us go to our next component. 35 00:02:35,930 --> 00:02:37,550 I will copy the same command. 36 00:02:38,480 --> 00:02:41,330 So that it will become easy for installation. 37 00:02:47,860 --> 00:02:49,610 I logged in as privileged user. 38 00:02:49,630 --> 00:02:52,480 Now let me check whether I have the package. 39 00:02:52,510 --> 00:02:55,480 Yes, I have the package downloaded here. 40 00:02:59,190 --> 00:03:02,030 So the same command, a copy paste, edited it. 41 00:03:02,040 --> 00:03:06,960 Enter children without any issues. 42 00:03:07,620 --> 00:03:08,180 That's it. 43 00:03:08,190 --> 00:03:11,960 We have installed our Splunk instead on the index. 44 00:03:11,960 --> 00:03:12,330 So. 45 00:03:14,160 --> 00:03:16,770 Now this is r a v for order. 46 00:03:18,040 --> 00:03:19,900 I logged in as a normal user. 47 00:03:19,930 --> 00:03:21,940 Let me switch to privilege user. 48 00:03:24,300 --> 00:03:27,180 Quickly verify whether we have the installation package. 49 00:03:28,000 --> 00:03:29,170 Based our comment. 50 00:03:30,020 --> 00:03:30,920 It entered. 51 00:03:41,330 --> 00:03:41,960 That is it. 52 00:03:41,960 --> 00:03:45,560 And the matter of minutes, we have installed three incidents of split. 53 00:03:45,590 --> 00:03:47,020 We have one more left. 54 00:03:47,030 --> 00:03:51,170 That is our Splunk deployment server or license manager. 55 00:03:54,760 --> 00:03:59,260 Switch to privilege user verify the package. 56 00:04:00,710 --> 00:04:03,530 And Pace the command at Hunter. 57 00:04:05,080 --> 00:04:11,320 You can automate it by writing a small script like script and provide all the IP addresses where you 58 00:04:11,320 --> 00:04:14,240 want to install Splunk components. 59 00:04:14,260 --> 00:04:18,250 This should be the basics so that one script should be able to execute everything. 60 00:04:19,720 --> 00:04:23,980 Now we have installed four instances of Splunk. 61 00:04:25,130 --> 00:04:26,330 Let us check out. 62 00:04:26,360 --> 00:04:32,480 These are Splunk fool instances how to install Splunk universal forwarder.