<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Splunk server Patching in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498357#M17143</link>
    <description>&lt;P&gt;Hi , My infra team is doing the Vulnerability patching on linux servers as we have 6 indexers clustered , we are doing patching on 3 indexers and 3 search heads clustered. is their anything that i need to do except validating the servers after patching ? as they are doing on 3 indexers i am thinking to enable maintenance mode ?&lt;/P&gt;</description>
    <pubDate>Fri, 06 Dec 2019 22:13:55 GMT</pubDate>
    <dc:creator>Prakash493</dc:creator>
    <dc:date>2019-12-06T22:13:55Z</dc:date>
    <item>
      <title>Splunk server Patching</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498357#M17143</link>
      <description>&lt;P&gt;Hi , My infra team is doing the Vulnerability patching on linux servers as we have 6 indexers clustered , we are doing patching on 3 indexers and 3 search heads clustered. is their anything that i need to do except validating the servers after patching ? as they are doing on 3 indexers i am thinking to enable maintenance mode ?&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2019 22:13:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498357#M17143</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-12-06T22:13:55Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk server Patching</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498358#M17144</link>
      <description>&lt;P&gt;Yes, use maintenance mode.  And run &lt;CODE&gt;splunk offline&lt;/CODE&gt; on each indexer before it is patched.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2019 03:31:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498358#M17144</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-09T03:31:46Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk server Patching</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498359#M17145</link>
      <description>&lt;P&gt;is it any problem if i use ./splunk stop command and after patching i will start the service , If i use splunk offline command what it will do and once patching finished how can i start splunk is by using ./splunk start ?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 20:04:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498359#M17145</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-12-10T20:04:20Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk server Patching</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498360#M17146</link>
      <description>&lt;P&gt;&lt;CODE&gt;splunk offline&lt;/CODE&gt; is better.  See &lt;A href="https://docs.splunk.com/Documentation/Splunk/8.0.0/Indexer/Takeapeeroffline"&gt;https://docs.splunk.com/Documentation/Splunk/8.0.0/Indexer/Takeapeeroffline&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 21:33:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498360#M17146</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-12-10T21:33:02Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk server Patching</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498361#M17147</link>
      <description>&lt;P&gt;Awesome thanks&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 22:05:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Splunk-server-Patching/m-p/498361#M17147</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-12-10T22:05:32Z</dc:date>
    </item>
  </channel>
</rss>

