Now that we have a running deployment server, we need to set up the clients to call home. On each machine that will be running the deployment client, the procedure is essentially as follows:
- Copy the deploymentclient-yourcompanyname app to $SPLUNK_HOME/etc/apps/
- Restart Splunk
If everything is configured correctly, you should see the appropriate apps appear in $SPLUNK_HOME/etc/apps/, within a few minutes. To see what is happening, look at the log $SPLUNK_HOME/var/log/splunk/splunkd.log.
If you have problems, enable debugging on either the client or the server by editing $SPLUNK_HOME/etc/log.cfg, followed by a restart. Look for the following lines:
category.DeploymentServer=WARN category.DeploymentClient=WARN
Once found, change them to the following lines and restart Splunk:
category.DeploymentServer=DEBUG category.DeploymentClient=DEBUG
After restarting Splunk, you will see the complete conversation in $SPLUNK_HOME/var/log/splunk/splunkd.log. Be sure to change the setting back once you no longer need the verbose logging!