We have a Splunk environment with 1 search head , multiple indexers and search peers. Currently search head stores a huge amount of Indexed data. Our requirement is to migrate Search head and Indexers/search peers to new servers. While doing this , we want to reduce volume of Indexed data in new search head, so we are thinking of distributing indexed data from search head to other peers.
All the servers are Windows based and version of Splunk is 7.0
Please let us know what is the right way of doing it.
Along with it , can you please also share instructions to be followed while migrating Indexers/Search peers and License server from one server to another ?