<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: upgrading to 4.3.2 in Installation</title>
    <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70893#M1160</link>
    <description>&lt;P&gt;apologies, shouldnt of read that so quick! can i confidentally just run the .msi through to upgrade to this version then? thanks &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 13 Jun 2012 15:00:18 GMT</pubDate>
    <dc:creator>mattj81</dc:creator>
    <dc:date>2012-06-13T15:00:18Z</dc:date>
    <item>
      <title>upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70885#M1152</link>
      <description>&lt;P&gt;im going to be upgrading from splunk 4.2 to 4.3.2 on windows 2008 x64.  ive backed up \program files\splunk\ and all its sub-folders to be safe. &lt;/P&gt;

&lt;P&gt;can i just run the latest .msi through without any issues?&lt;/P&gt;

&lt;P&gt;thanks!&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jun 2012 15:27:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70885#M1152</guid>
      <dc:creator>mattj81</dc:creator>
      <dc:date>2012-06-08T15:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70886#M1153</link>
      <description>&lt;P&gt;You should definitely read &lt;A href="http://docs.splunk.com/Documentation/Splunk/4.3.2/Installation/Aboutupgradingto4.3READTHISFIRST"&gt;About Upgrading to 4.3 READ THIS FIRST&lt;/A&gt; in the Installation Manual. Step-by-step instructions about performing the upgrade itself follow that topic. It's hard to answer your question specifically without knowing a little more about your Splunk deployment. You'll want to back up your indexed event data and your configuration data. There are some changes in 4.3 on Windows, like host name normalization, that you will want to be aware of. The documentation should give you what you need.&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jun 2012 16:16:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70886#M1153</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-06-08T16:16:28Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70887#M1154</link>
      <description>&lt;P&gt;thanks for the response! ive backed up everything mentioned in the document....will host name normailization break my current setup then?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Jun 2012 07:23:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70887#M1154</guid>
      <dc:creator>mattj81</dc:creator>
      <dc:date>2012-06-11T07:23:13Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70888#M1155</link>
      <description>&lt;P&gt;Again, it's hard to answer without knowing more. It depends on what your current setup is. Do you have scripted inputs defined in inputs.conf? Do you have searches that expect fully-qualified domain names? If something stops working after you upgrade, you can specify a host name using the "host" attribute for that particular input.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Jun 2012 16:30:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70888#M1155</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-06-11T16:30:04Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70889#M1156</link>
      <description>&lt;P&gt;I'd caution you to hold off installing 4.3.2 on Windows if you intend to collect data from the Windows Event Logs. There's a known issue where Windows Event Logs are not read properly (issue &lt;A href="http://docs.splunk.com/Documentation/Splunk/4.3.2/ReleaseNotes/KnownIssues"&gt;SPL-51312&lt;/A&gt; ; see &lt;A href="http://splunk-base.splunk.com/answers/47535/wineventlog-on-windows-2008-and-splunk-432-forwarders-splunk-could-not-get-the-description-for-this-event"&gt;answer 47535&lt;/A&gt; for more background). Splunk and the Universal Forwarder v4.3.1 don't have this problem...&lt;/P&gt;</description>
      <pubDate>Mon, 11 Jun 2012 16:55:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70889#M1156</guid>
      <dc:creator>jeff</dc:creator>
      <dc:date>2012-06-11T16:55:55Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70890#M1157</link>
      <description>&lt;P&gt;Good point there. SPL-51312 is fixed in the forthcoming 4.3.3 maintenance release.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2012 16:19:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70890#M1157</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-06-12T16:19:45Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70891#M1158</link>
      <description>&lt;P&gt;ahh right, which version would you go to then if 4.3.2 isnt stable?&lt;/P&gt;</description>
      <pubDate>Wed, 13 Jun 2012 07:04:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70891#M1158</guid>
      <dc:creator>mattj81</dc:creator>
      <dc:date>2012-06-13T07:04:37Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70892#M1159</link>
      <description>&lt;P&gt;4.3.1, as jeff said in his previous answer.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Jun 2012 14:57:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70892#M1159</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-06-13T14:57:46Z</dc:date>
    </item>
    <item>
      <title>Re: upgrading to 4.3.2</title>
      <link>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70893#M1160</link>
      <description>&lt;P&gt;apologies, shouldnt of read that so quick! can i confidentally just run the .msi through to upgrade to this version then? thanks &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Jun 2012 15:00:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/upgrading-to-4-3-2/m-p/70893#M1160</guid>
      <dc:creator>mattj81</dc:creator>
      <dc:date>2012-06-13T15:00:18Z</dc:date>
    </item>
  </channel>
</rss>

