Knowledge Management

is my data stored localy or in the cloud?

osandstedt
New Member

I have tried to search, but I have not found and good answer.
When I push data into spunk, is the data stored localy on a server? Or is it stored somewhere in a cloud?

We do want to keep all our data localy and not in a cloud.

Tags (3)
0 Karma

aholzer
Motivator

The answer to that depends on what Splunk you are using, and what your configurations look like.

Splunk enterprise (the one you download and install yourself) allows you to configure where the data is stored in the indexes.conf. As long as you have a mount to the location you are storing it, you can have it stored on the cloud, or locally. By default it will store it locally under $SPLUNK_HOME/var/lib/splunk/.

If you are using Splunk Cloud, I hope the answer is clear.

Hope this helps

halr9000
Motivator

FYI, i converted your comment to an answer.

0 Karma

halr9000
Motivator

It's up to you. There are now four flagship products:

  • Splunk Enterprise
  • Splunk Hunk
  • Splunk Light
  • Splunk Cloud

Of these, the first three are software that you install wherever you like. The last one is a cloud service.

To go a step further, the data indexed by Splunk resides within the software and never goes outside unless you configure it to do so.

osandstedt
New Member

Great, thank you for your answers 🙂

0 Karma

halr9000
Motivator

And I converted your answer to a comment! If you keep discussion in comments, and actual answers as Answer posts, that will make the site work much better for everyone, and allow for people to accurately know which questions have been resolved or not.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...