<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Indexer Cluster Migration to VM with different OS in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706860#M21096</link>
    <description>&lt;P&gt;We faced the same challenge, but in our case we had to migrate the OS version and the Splunk version at the same time:&lt;BR /&gt;We created an indexer cluster with the new OS version and Splunk version. This cluster ingests the new data&lt;BR /&gt;We kept a single instance of the old read-only indexer cluster to query historical data.&lt;BR /&gt;The search head cluster was connected to all peers, the indexer cluster and the standalone indexer.&lt;BR /&gt;Once the retention times had expired, we decommissioned the old indexer.&lt;/P&gt;</description>
    <pubDate>Mon, 16 Dec 2024 10:31:04 GMT</pubDate>
    <dc:creator>pmerlin1</dc:creator>
    <dc:date>2024-12-16T10:31:04Z</dc:date>
    <item>
      <title>Indexer Cluster Migration to VM with different OS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/705023#M20892</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have an multisite indexer cluster with Splunk Enterprise 9.1.2 running in Red-hat 7 VMs and we need to migrate them to others VMs but with Red-Hat 9.&lt;/P&gt;&lt;P&gt;From documentation it's been required that all members of a cluster must have the same OS and version.&lt;/P&gt;&lt;P&gt;I was thinking to simply add one new indexer (redhat 9 vm) at the time and dettach an old one forcinf the buckets count. So for a short-time the cluster would have members with different OS versions.&lt;BR /&gt;&lt;BR /&gt;Upgrading from Red-Hat 7 to Red.Had 9 directly in the splunk enviroment&amp;nbsp;&lt;STRONG&gt;is not possible&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;I would like to know if there are critical issues to face while the migration is happening?&amp;nbsp; I hope the procedure won't last more than 2 days.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Nov 2024 10:27:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/705023#M20892</guid>
      <dc:creator>aguilard</dc:creator>
      <dc:date>2024-11-22T10:27:07Z</dc:date>
    </item>
    <item>
      <title>Re: Indexer Cluster Migration to VM with different OS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/705038#M20896</link>
      <description>&lt;P&gt;The procedure you're thinking of is common and works well.&amp;nbsp; Good luck!&lt;/P&gt;</description>
      <pubDate>Fri, 22 Nov 2024 13:22:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/705038#M20896</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2024-11-22T13:22:48Z</dc:date>
    </item>
    <item>
      <title>Re: Indexer Cluster Migration to VM with different OS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706859#M21095</link>
      <description>&lt;P&gt;Nous avons du faire face au même défi mais pour notre cas nous devions migrer la version OS et la version Splunk en même temps :&lt;BR /&gt;Nous avons créer un cluster d'indexer avec la nouvelle version OS et version Splunk. Ce cluster ingère les nouvelles données&lt;BR /&gt;Nous avons conserver une seule instance de l'ancien cluster d'indexer en lecture seule pour requêter les données historiques&lt;BR /&gt;Le cluster de search head était branché sur tous les peers, le cluster d'indexer et l'indexer standalone.&lt;BR /&gt;Une fois les durées de rétention expirées, nous avons décommissionné l'ancien indexer.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 10:28:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706859#M21095</guid>
      <dc:creator>pmerlin1</dc:creator>
      <dc:date>2024-12-16T10:28:47Z</dc:date>
    </item>
    <item>
      <title>Re: Indexer Cluster Migration to VM with different OS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706860#M21096</link>
      <description>&lt;P&gt;We faced the same challenge, but in our case we had to migrate the OS version and the Splunk version at the same time:&lt;BR /&gt;We created an indexer cluster with the new OS version and Splunk version. This cluster ingests the new data&lt;BR /&gt;We kept a single instance of the old read-only indexer cluster to query historical data.&lt;BR /&gt;The search head cluster was connected to all peers, the indexer cluster and the standalone indexer.&lt;BR /&gt;Once the retention times had expired, we decommissioned the old indexer.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 10:31:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706860#M21096</guid>
      <dc:creator>pmerlin1</dc:creator>
      <dc:date>2024-12-16T10:31:04Z</dc:date>
    </item>
    <item>
      <title>Re: Indexer Cluster Migration to VM with different OS</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706963#M21110</link>
      <description>Basically you shouldn’t migrate both os and splunk at the same time. Just select which one you do first and after you have finalized it and check couple of days that everything is ok, then do the second migration. Of course if you have new host where to migrate then those os can be migrated earlier and just migrate splunk into those. Again you could migrate splunk before node migration or after it, but don’t try it the same time (e.g. new hosts have newer version).&lt;BR /&gt;Here is how I have done it earlier &lt;A href="https://community.splunk.com/t5/Splunk-Enterprise/Migration-of-Splunk-to-different-server-same-platform-Linux-but/m-p/538062" target="_blank"&gt;https://community.splunk.com/t5/Splunk-Enterprise/Migration-of-Splunk-to-different-server-same-platform-Linux-but/m-p/538062&lt;/A&gt;&lt;BR /&gt;r. Ismo</description>
      <pubDate>Mon, 16 Dec 2024 21:50:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Indexer-Cluster-Migration-to-VM-with-different-OS/m-p/706963#M21110</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2024-12-16T21:50:52Z</dc:date>
    </item>
  </channel>
</rss>

