Folks, what would be the process for installing reporting and managing OSSEC application for Splunk on a multisite splunk cluster. I have 2 sites with a master indexer and 4 peer indexers in each site. For search head tier, I have a cluster of 3 Search heads and a deployer.
My understanding is to install reporting and managing OSSEC application for Splunk on the master indexer and that should push it to the peer indexers. And use the deployer to push it to the search heads. Is there any step by step process to follow for this installation in splunk cluster? I have it successfully working in a standalone Splunk server but I would like to integrate it with the splunk cluster now. Thanks!! Anita -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.