<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Upgrading Standalone Search Head App in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Upgrading-Standalone-Search-Head-App/m-p/459906#M56609</link>
    <description>&lt;P&gt;I have a Splunk Enterprise distributed environment setup with 1 search head, 2 Clustered indexers, a Cluster master, and a Deployment Server/License Server.&lt;/P&gt;

&lt;P&gt;I recently installed both the &lt;STRONG&gt;Cisco-networks-add-on-for-splunk-enterprise_254&lt;/STRONG&gt; and the &lt;STRONG&gt;cisco-networks-app-for-splunk-enterprise_254&lt;/STRONG&gt; on my search head. Today I upgraded the cisco networks app from 254 to 255 using the following cli command:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt; ./splunk install app &amp;lt;app_package_filename&amp;gt; -update 1 -auth &amp;lt;username&amp;gt;:&amp;lt;password&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;This appeared to upgrade the app ok and it fixed the issue that I was having with the Overview Dashboard, however have noticed that if I click on App:Cisco Networks&amp;gt;Inventory&amp;gt;Interfaces, then I get the following error:&lt;/P&gt;

&lt;BLOCKQUOTE&gt;
&lt;P&gt;Error in 'PivotProcessor':Error in 'PivotUtil': The dataset 'interface' has no field 'index'&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;

&lt;P&gt;I am using a custom index for my cisco syslogs. Do I need to modify the app accordingly?&lt;/P&gt;</description>
    <pubDate>Thu, 26 Jul 2018 05:59:19 GMT</pubDate>
    <dc:creator>splkmika1</dc:creator>
    <dc:date>2018-07-26T05:59:19Z</dc:date>
    <item>
      <title>Upgrading Standalone Search Head App</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Upgrading-Standalone-Search-Head-App/m-p/459906#M56609</link>
      <description>&lt;P&gt;I have a Splunk Enterprise distributed environment setup with 1 search head, 2 Clustered indexers, a Cluster master, and a Deployment Server/License Server.&lt;/P&gt;

&lt;P&gt;I recently installed both the &lt;STRONG&gt;Cisco-networks-add-on-for-splunk-enterprise_254&lt;/STRONG&gt; and the &lt;STRONG&gt;cisco-networks-app-for-splunk-enterprise_254&lt;/STRONG&gt; on my search head. Today I upgraded the cisco networks app from 254 to 255 using the following cli command:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt; ./splunk install app &amp;lt;app_package_filename&amp;gt; -update 1 -auth &amp;lt;username&amp;gt;:&amp;lt;password&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;This appeared to upgrade the app ok and it fixed the issue that I was having with the Overview Dashboard, however have noticed that if I click on App:Cisco Networks&amp;gt;Inventory&amp;gt;Interfaces, then I get the following error:&lt;/P&gt;

&lt;BLOCKQUOTE&gt;
&lt;P&gt;Error in 'PivotProcessor':Error in 'PivotUtil': The dataset 'interface' has no field 'index'&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;

&lt;P&gt;I am using a custom index for my cisco syslogs. Do I need to modify the app accordingly?&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 05:59:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Upgrading-Standalone-Search-Head-App/m-p/459906#M56609</guid>
      <dc:creator>splkmika1</dc:creator>
      <dc:date>2018-07-26T05:59:19Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrading Standalone Search Head App</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Upgrading-Standalone-Search-Head-App/m-p/459907#M56610</link>
      <description>&lt;P&gt;@splkmika1 , the customization including the index (if you have put in the default) might have been overwritten by the installation/upgrade of new app. Since you have already updated the app, just have a look at the configuration files especially indexes.conf to see if your customization still exists &lt;/P&gt;</description>
      <pubDate>Thu, 26 Jul 2018 06:22:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Upgrading-Standalone-Search-Head-App/m-p/459907#M56610</guid>
      <dc:creator>renjith_nair</dc:creator>
      <dc:date>2018-07-26T06:22:28Z</dc:date>
    </item>
  </channel>
</rss>

