Solved

Backup Splunk' s Frozen Buckets

  • 11 November 2021
  • 7 replies
  • 216 views

Userlevel 2
Badge +9

Hi Fellas,

I have some questions about the Splunk’ s data backup. According to the documentation Commvault can take backup Splunk Indexes. But the Splunk has some specials files called “hot buckets, warm buckets, cold buckets, frozen buckets”. Can we take these backup with the Commvault ?

We especially want to take Frozen Buckets backup. Anyone has know any information or suggestions ?

 

https://documentation.commvault.com/11.24/essential/111273_splunk.html

https://docs.splunk.com/Documentation/Splunk/8.2.2/Indexer/Backupindexeddata

 

 

icon

Best answer by Mike Struening RETIRED 18 November 2021, 16:36

View original

7 replies

Userlevel 7
Badge +23

@0ber0n , thanks for the interesting question!

I’m going to talk to our docs team and some support folks to see if this can be done, and ensure our docs are updated accordingly.

I’ll be in touch!

Userlevel 2
Badge +9

Hi Mike,

 

Thank you for your interest and quick response. Estimately when we can get a response ? I will have to work on that next week.

Userlevel 7
Badge +23

I had hoped to by now, so I followed up again with the doc owner.  The good news is that I know who the person is who owns the documentation for Splunk; just need to confirm/get an answer.

Hopefully I can get something early next week if not today.

 

Userlevel 2
Badge +9

Hi Mike,

Did you get an answer from the person who owns the documentation for Splunk ?

Userlevel 7
Badge +23

Apologies, I thought they were going to respond directly :nerd:

We don't backup frozen buckets. We backup warm and cold buckets of indexes.

I can’t comment on any future improvements at this time, though the above is how things work today.

Userlevel 2
Badge +9

Thanks Mike, I really do appreciate that.

Userlevel 7
Badge +23

My pleasure!

Reply