Skip to main content
 
 
Splunk Lantern

Preparing your environment for Splunk Asset and Risk Intelligence

 

One of the first steps in getting ready to use Splunk Asset and Risk Intelligence is ensuring you have the correct hardware and software environment.

Splunk Asset and Risk Intelligence can be installed on either Splunk Enterprise or Splunk Cloud Platform. Splunk Asset and Risk Intelligence is deployed on either a single search head or on a search head cluster environment. Splunk Asset and Risk Intelligence requires a Linux or Unix OS installation on all Splunk search heads and indexers with the following minimum hardware specifications:

Machine role

Minimum CPU

Minimum RAM

Search head

24 cores

32 GB

Indexer

24 cores

32 GB

For the best performance, use two Splunk indexers with at least 800 IOPS and 150 GB disk space. Anything less than these requirements significantly impacts the performance of Splunk Asset and Risk Intelligence.