<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk application renaming without losing existing user data in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706965#M116908</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;as you have renamed and changed AppId then this is totally new application without any reference into the old one. There is no automatic way how you could migrate those all KOs from old app and especially from user private folders.&lt;/P&gt;&lt;P&gt;If those installations are in onprem then you could use e.g. this script/solution &lt;A href="https://community.splunk.com/t5/Dashboards-Visualizations/Can-we-move-the-saved-searches-or-knowledge-objects-created/m-p/672741/highlight/true#M55102" target="_blank"&gt;https://community.splunk.com/t5/Dashboards-Visualizations/Can-we-move-the-saved-searches-or-knowledge-objects-created/m-p/672741/highlight/true#M55102&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You could try to modify this script to work remotely with Splunk Cloud, but it needs some work and I don’t be sure that can you even do it?&lt;/P&gt;&lt;P&gt;I have no experience how to remove app from splunkbase. Probably it can do with service request? At least you could update the old app and tell that everyone should use your new one.&amp;nbsp;&lt;BR /&gt;r. Ismo&lt;/P&gt;</description>
    <pubDate>Mon, 16 Dec 2024 22:03:40 GMT</pubDate>
    <dc:creator>isoutamo</dc:creator>
    <dc:date>2024-12-16T22:03:40Z</dc:date>
    <item>
      <title>Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706852#M116890</link>
      <description>&lt;P&gt;I have an application on Splunkbase and want to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;rename&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;it along with the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;commands and custom action&lt;/STRONG&gt;.&lt;BR /&gt;&lt;BR /&gt;I have updated the app name by&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;renaming the folder and updating the app ID&lt;/STRONG&gt;. I've also updated the commands and custom action with the new name.&lt;BR /&gt;&lt;BR /&gt;While testing it on my local Splunk instance I observed that the existing application isn't getting&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;replaced&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;with a new one as the folder name and app name/ID is different compared to the older version.&lt;BR /&gt;&lt;BR /&gt;I believe that is fine as I can ask users to remove it from their instances, but I want the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;saved searches&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;as well as&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;local data&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;of the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;older app&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;to be available in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;renamed app&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;(newer app) but I'm unable to find any appropriate way of doing so.&lt;BR /&gt;&lt;BR /&gt;Lastly, There was a post in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A title="https://community.splunk.com/t5/Splunk-Enterprise/How-to-update-an-app-that-had-a-name-change/m-p/569214" href="https://community.splunk.com/t5/Splunk-Enterprise/How-to-update-an-app-that-had-a-name-change/m-p/569214" target="_blank" rel="noopener"&gt;community&lt;/A&gt;&amp;nbsp;where the solution was to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;clone&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;local data&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;from the older app to the newer app but that isn't feasible for me as I don't have access to the instances that the users are having with the older app installed.&lt;BR /&gt;&lt;BR /&gt;Can someone please help me with this?&lt;BR /&gt;&lt;BR /&gt;Also, I had a few other questions related to older applications:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;DIV class=""&gt;What is the procedure for&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;deleting&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;an already existing application on Splunkbase?&lt;/DIV&gt;&lt;OL&gt;&lt;LI&gt;&lt;DIV class=""&gt;Is emailing Splunk support the only way?&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;Tried app archiving but it doesn't restrict the users from installing it.&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;Is there a way to transfer the old Splunk application or account to a new account? any alternative to emailing the Splunk support team?&amp;nbsp;&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;TL;DR&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;How can I replace the already installed application on the user's end with the newly renamed application in Splunk?&lt;/LI&gt;&lt;OL&gt;&lt;LI&gt;&lt;DIV class=""&gt;Since the names of the applications differ, Splunk installs a separate app for the new name instead of updating the existing one.&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;LI&gt;&lt;DIV class=""&gt;If there are users who are already using the existing application and have the application's saved configurations and searches, how can we get it migrated to the newly renamed application?&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Mon, 16 Dec 2024 08:51:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706852#M116890</guid>
      <dc:creator>Moogsoft</dc:creator>
      <dc:date>2024-12-16T08:51:20Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706965#M116908</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;as you have renamed and changed AppId then this is totally new application without any reference into the old one. There is no automatic way how you could migrate those all KOs from old app and especially from user private folders.&lt;/P&gt;&lt;P&gt;If those installations are in onprem then you could use e.g. this script/solution &lt;A href="https://community.splunk.com/t5/Dashboards-Visualizations/Can-we-move-the-saved-searches-or-knowledge-objects-created/m-p/672741/highlight/true#M55102" target="_blank"&gt;https://community.splunk.com/t5/Dashboards-Visualizations/Can-we-move-the-saved-searches-or-knowledge-objects-created/m-p/672741/highlight/true#M55102&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You could try to modify this script to work remotely with Splunk Cloud, but it needs some work and I don’t be sure that can you even do it?&lt;/P&gt;&lt;P&gt;I have no experience how to remove app from splunkbase. Probably it can do with service request? At least you could update the old app and tell that everyone should use your new one.&amp;nbsp;&lt;BR /&gt;r. Ismo&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 22:03:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706965#M116908</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2024-12-16T22:03:40Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706967#M116910</link>
      <description>&lt;P&gt;Wait a second.&lt;/P&gt;&lt;P&gt;Splunkbase is a channel for application distribution. While in a standalone server setups you can pull an app directly from Splunkbase it's not meant to be your deployment server.&lt;/P&gt;&lt;P&gt;Trying to pull some tricks with application ID and renaming "in place" is a relatively ugly solution. Why not just release a new app and provide a docs for migration between those "versions"?&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2024 23:16:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/706967#M116910</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-12-16T23:16:10Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707156#M116921</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231884"&gt;@PickleRick&lt;/a&gt;&amp;nbsp;Thanks for the reply,&amp;nbsp; Yes I meant the same; i.e. Splunkbase&amp;nbsp;&lt;SPAN&gt;is a channel for application distribution.&lt;BR /&gt;&lt;BR /&gt;I agree that we can release a new app along with migration steps. Still, I'm looking for a solution where the existing application user can seamlessly move to the newly renamed application without having to worry about replicating the same saved searches as well as the app setup to the newer app.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2024 13:56:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707156#M116921</guid>
      <dc:creator>Moogsoft</dc:creator>
      <dc:date>2024-12-18T13:56:18Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707157#M116922</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/214410"&gt;@isoutamo&lt;/a&gt;&amp;nbsp;Thanks for the reply, I'm afraid to go with the scripts route, but I'll still check if there is any other solution I can find as I'm looking to move the existing users from the old application to the renamed one without much effort.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2024 14:00:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707157#M116922</guid>
      <dc:creator>Moogsoft</dc:creator>
      <dc:date>2024-12-18T14:00:18Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk application renaming without losing existing user data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707185#M116927</link>
      <description>It’s possible to do almost seamless migration for end users as I told in previous post. But it needs some manual work for admins and of course enough documentation for both.</description>
      <pubDate>Wed, 18 Dec 2024 17:03:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-application-renaming-without-losing-existing-user-data/m-p/707185#M116927</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2024-12-18T17:03:27Z</dc:date>
    </item>
  </channel>
</rss>

