Indexing capacity and data replication

Splunk provides the ability to cluster index servers together for high volume environments. Splunk also provides data replication services across the cluster nodes to survive a cluster node failure. A node in the index cluster is referred to as a peer. More than one peer will actively index data. A separate master node coordinates replication and supports search activity across the peers. Splunk training will provide guidelines for search and indexed data volume to help guide your hardware sizing activities.