<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Splunk Upgrade from 7.3.0 to 9.x in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/678566#M13676</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have a single splunk instance(Linux) hosted in AWS. The current version is Splunk entrprise 7.3.0 and we would like to upgrade to 9.x&lt;/P&gt;&lt;P&gt;Could someone please help us with the upgrade path and instructions.&lt;/P&gt;</description>
    <pubDate>Sat, 24 Feb 2024 13:58:17 GMT</pubDate>
    <dc:creator>nachi</dc:creator>
    <dc:date>2024-02-24T13:58:17Z</dc:date>
    <item>
      <title>Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/678566#M13676</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have a single splunk instance(Linux) hosted in AWS. The current version is Splunk entrprise 7.3.0 and we would like to upgrade to 9.x&lt;/P&gt;&lt;P&gt;Could someone please help us with the upgrade path and instructions.&lt;/P&gt;</description>
      <pubDate>Sat, 24 Feb 2024 13:58:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/678566#M13676</guid>
      <dc:creator>nachi</dc:creator>
      <dc:date>2024-02-24T13:58:17Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/678568#M13677</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/265261"&gt;@nachi&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;upgrade from 7.3.0 to 9.x is a long path because they are a very different products and you have to change the python version,&lt;/P&gt;&lt;P&gt;so at first you have to migrate at 8.0.x or 8.1.x,&amp;nbsp;following the steps&amp;nbsp; at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/8.2.1/Installation/HowtoupgradeSplunk" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/8.2.1/Installation/HowtoupgradeSplunk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;then at 8.2.x &lt;A href="https://docs.splunk.com/Documentation/Splunk/9.1.0/Installation/HowtoupgradeSplunk" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/9.1.0/Installation/HowtoupgradeSplunk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;then at 9.0 or 9.1&lt;/P&gt;&lt;P&gt;and at least at 9.2 as described at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.2.0/Installation/HowtoupgradeSplunk" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/9.2.0/Installation/HowtoupgradeSplunk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Special attention must be used in App migration because python changed and the old apps could not be compatible with the new version; use the Upgrade readiness app (&lt;A href="https://splunkbase.splunk.com/app/5483" target="_blank"&gt;https://splunkbase.splunk.com/app/5483&lt;/A&gt;) to check your apps followinf the documentation at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/UpgradeReadiness/About?_gl=1*fwtqsv*_ga*MzU3MjIzOTU1LjE3MDA4MDg0NTc.*_ga_GS7YF8S63Y*MTcwODc5MDM2Ni40MTEuMS4xNzA4NzkxMTA1LjM3LjAuMA..*_ga_5EPM2P39FV*MTcwODc5MDMxNC40MjguMS4xNzA4NzkxMTA1LjAuMC4w&amp;amp;_ga=2.18236731.384474630.1707733577-357223955.1700808457" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/latest/UpgradeReadiness/About?_gl=1*fwtqsv*_ga*MzU3MjIzOTU1LjE3MDA4MDg0NTc.*_ga_GS7YF8S63Y*MTcwODc5MDM2Ni40MTEuMS4xNzA4NzkxMTA1LjM3LjAuMA..*_ga_5EPM2P39FV*MTcwODc5MDMxNC40MjguMS4xNzA4NzkxMTA1LjAuMC4w&amp;amp;_ga=2.18236731.384474630.1707733577-357223955.1700808457&lt;/A&gt;&lt;/P&gt;&lt;P&gt;For the apps from Splunkbase, find the new versions compatible with the latest Splunk version.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 24 Feb 2024 16:14:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/678568#M13677</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-02-24T16:14:35Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712189#M14305</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;I am very confused, i&lt;SPAN&gt;f we upgrade Splunk Enterprise from version 7.x.x to version 9.x.x, what impact will it have on the license? And will it affect the use of functions?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2025 07:26:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712189#M14305</guid>
      <dc:creator>chenfan</dc:creator>
      <dc:date>2025-02-21T07:26:08Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712191#M14306</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;the impact on license is null because you pay license based on the logs that are daily indexed, so probably they will be the same.&lt;/P&gt;&lt;P&gt;About feature, you have many additional feature in the new Splunk version, you can read at the links I shared to see the new features and the removed features.&lt;/P&gt;&lt;P&gt;Put very much attention to the migration path and follow every step (even if it's very long!), because between 7 and 9 versions there were many structural changes (Pyton, mongodb, html, etc...).&lt;/P&gt;&lt;P&gt;Then you have also to upgrade all the apps, because some of them aren't compatible with the old app versions.&lt;/P&gt;&lt;P&gt;Then remember thet there's an orden in upgrading:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Cluster Manager,&lt;/LI&gt;&lt;LI&gt;Search Heads,&lt;/LI&gt;&lt;LI&gt;Indexers,&lt;/LI&gt;&lt;LI&gt;Other Splunk Servers (e.g. Deployment Server or Monitoring Console),&lt;/LI&gt;&lt;LI&gt;Heavy Forwarders&lt;/LI&gt;&lt;LI&gt;Universal Forwarders;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;and this order must be maintained for each upgrade level (7-&amp;gt;8 all the steps, 8-&amp;gt;9 all the steps).&lt;/P&gt;&lt;P&gt;Last hint: plan all the steps in a document to be sure that you aren't forgotting any step.&lt;/P&gt;&lt;P&gt;As I said, it will be a very long job, and it could be a good idea, to engage a certified Splunk Architect in the design phase and eventually also in the execution phase.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2025 08:00:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712191#M14306</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-02-21T08:00:27Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712192#M14307</link>
      <description>&lt;P&gt;Hi @gcusello，&lt;BR /&gt;Thankyou for your reply, it's very helpful for me.&amp;nbsp;&lt;SPAN&gt;Can it be directly upgraded from 7.2.x to 9.2.x since it is a single node?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2025 08:32:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712192#M14307</guid>
      <dc:creator>chenfan</dc:creator>
      <dc:date>2025-02-21T08:32:41Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712193#M14308</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You cannot do direct upgrade from 7.2.x to 9.2.x. You have to go throught version levels as&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;mentioned in previous post.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have a nice day,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2025 08:42:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712193#M14308</guid>
      <dc:creator>Cievo</dc:creator>
      <dc:date>2025-02-21T08:42:00Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712195#M14310</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;no, as I said, you have to complete the steps in upgrade for all the nodes level by level:&lt;/P&gt;&lt;P&gt;at first, all the nodes from 7 to 8, than the others, you cannot upgrade node by node, but all the nodes of each level of the upgrade path.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2025 12:04:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712195#M14310</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-02-21T12:04:59Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712410#M14314</link>
      <description>Thanks!</description>
      <pubDate>Tue, 25 Feb 2025 03:12:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712410#M14314</guid>
      <dc:creator>chenfan</dc:creator>
      <dc:date>2025-02-25T03:12:21Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712419#M14315</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;let us know if we can help you more, or, please, accept one answer for the other people of Community.&lt;/P&gt;&lt;P&gt;Ciao and happy splunking&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated by all the contributors &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2025 07:53:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/712419#M14315</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-02-25T07:53:15Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740887#M14317</link>
      <description>&lt;P&gt;Hi @&lt;SPAN&gt;gcusello&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thank you for your reply！&lt;BR /&gt;&lt;/SPAN&gt;&lt;BR /&gt;Can I upgrade the platform from version 7.x.x to version 9.3.x and then uniformly upgrade the Apps/Add-ons to their latest versions? Will this have an impact on my system?&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 07:42:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740887#M14317</guid>
      <dc:creator>chenfan</dc:creator>
      <dc:date>2025-03-05T07:42:07Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740889#M14318</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;as I said, upgrade your platform using the upgrade path described in the documentation, don't skip any step!&lt;/P&gt;&lt;P&gt;Then you can upgrade your apps.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 07:50:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740889#M14318</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-03-05T07:50:02Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740906#M14319</link>
      <description>&lt;P&gt;This is depending from those apps. You must first check which are working in which splunk versions. It’s quite probable that you need to update those also step by step as it’s quite possible that same version doesn’t work on 7.x and 9.3. Also it’s possible that some apps don’t work anymore in 9.3. Also some may need OS level updates like OS version, Java or python updates etc.&lt;/P&gt;&lt;P&gt;Depending of your data and integrations you should even think and plan if it’s possible to setup totally new node up with fresh install and newest apps. That could be much easier way to do version update? Of course it probably needs that you could leave the old node up and running until its data have expired. Also you must transfer license to new server and add old as a license client for it.&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 10:31:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/740906#M14319</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2025-03-05T10:31:10Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/742590#M14330</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;SPAN&gt;Considering various factors, we have decided to directly deploy a new Splunk Enterprise 9.3.X instance. Can we directly deploy the License file to the new instance?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Mar 2025 06:43:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/742590#M14330</guid>
      <dc:creator>chenfan</dc:creator>
      <dc:date>2025-03-25T06:43:04Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Upgrade from 7.3.0 to 9.x</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/742599#M14331</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/251661"&gt;@chenfan&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;Ok, there's no requirement on the license.&lt;/P&gt;&lt;P&gt;Anyway, the choose of install from scratch a new instance is a strange approach because you said to have a structured architecture with many servers and componente:&amp;nbsp;in other words you want to start a new infrastructure,&lt;/P&gt;&lt;P&gt;I'm not sure that you save time creating from scratch the same infrastructure and copying all the apps and configurations, but it's your choose!&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Tue, 25 Mar 2025 07:53:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-Upgrade-from-7-3-0-to-9-x/m-p/742599#M14331</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-03-25T07:53:27Z</dc:date>
    </item>
  </channel>
</rss>

