Distributed LogPoint

The Distributed Logpoint setup connects multiple LogPoint machines to segregate search and indexing. You can collect, index, and store logs in multiple LogPoint machines and search through them from a single main LogPoint, the Search Head. You can also monitor, configure, and analyze the logs on the connected devices.

The following scenario demonstrates workflow in the distributed setup using two LogPoint machines, LP1 and LP2 with varying privileges:

In LP1, you can add LP2 as a distributed LogPoint if you have the permission to access the logs on LP2. The users in LP1 can then search and create dashboards, alerts, and reports using the logs from the repos in either machine. In this case, users in LP2 cannot view the logs in LP1 unless LP1 is also added as a distributed LogPoint of LP2.

You can switch between multiple LogPoint machines using the DLP Selector in the top-right corner of the title bar.

_images/LP_Config_DLP_Selector.png

Distributed LogPoint Selector

Note

The DLP Selector is only visible in the Settings page.

_images/LP4.png

Four DLPs with a single search head

The figure demostrates a distributed setup with four LogPoint machines. Here, LP2, LP3, and LP4 are added as Distributed LogPoint for LP1. the logs from LP2, LP3, and LP4 are then accessible at LP1.

Note

  • You can configure two or more LogPoint machines as Distributed LogPoint of each other. The logs are then accessible both ways.

  • The names of each LogPoint must be unique in a distributed setup. You can change the name of a LogPoint from System Settings >> General.

The Distributed LogPoint guide helps you to understand and perform the following tasks:

Adding and Configuring

Editing and Managing

Deleting


Helpful?

We are glad this guide helped.


Please don't include any personal information in your comment

Contact Support