Load balancing on a Universal Forwarder is not scaling correctly. The forwarder’s outputs.conf and the tcpout stanza are setup correctly. What else could be the cause of this scaling issue? (Choose all that apply.)
A.
The indexAndForward value is not set properly.
B.
The DNS record used is not setup with a valid list of IP addresses.
C.
The inputs.conf’s _SYSLOG_ROUTING is not setup to use the right group names.
D.
The receiving port is not properly setup to listen on the right port.
if indexAndForward is not set properly, it can affect how data is distributed and load balanced across the forwarders. indexAndForward is used in the configuration of Splunk forwaders, specically in the outputs.conf
but since the outputs.conf is set up correctly, this eliminate A.
if the DNS record that the Universal Forwarder relies on does not have the correct list of IP addresses for the indexers, the load balancing would fail to distribute data correctly .
if ther recieving port is not corretly configured, it can cause issues with data transmission and load balancing
the inputs.conf's _SYSLOG_ROUGHING is used for directing syslog events to specified groups, but it does not impact the load balancing of data forwarded by a Universal Forwarder.
the answer is BD
The correct answers to this question are:
B. The DNS record used is not setup with a valid list of IP addresses.
D. The receiving port is not properly setup to listen on the right port.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
NastyNutsu
6 days, 9 hours ago14b6303
1 month, 2 weeks ago