<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539891#M7180</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Drat!&amp;nbsp; I was hoping it would provide more context, but clearly it does not.&amp;nbsp; We're going to need a Procmon log to troubleshoot further, which will be very large in size, unfortunately.&amp;nbsp; Are you able to open a Support case with Splunk?&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 15 Feb 2021 10:23:45 GMT</pubDate>
    <dc:creator>jho-splunk</dc:creator>
    <dc:date>2021-02-15T10:23:45Z</dc:date>
    <item>
      <title>Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539745#M7173</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I am trying to upgrade Splunk enterprise version 7.3.2 which has forwarder enabled to the new version 8.1.2&lt;/P&gt;&lt;P&gt;The upgrade fails and rolls back.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did try to run the installation as admin user.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can you please let me know the possible causes and how to fix this.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can see the following error in migration logs&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed cli cmd _py_internal&lt;/P&gt;&lt;P&gt;Any help is appreciated&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 18:34:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539745#M7173</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-12T18:34:28Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539746#M7174</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;There may be some further detail in &lt;FONT face="courier new,courier"&gt;%TEMP%\splunk.log&lt;/FONT&gt;.&amp;nbsp; Could you let us know what it says, please?&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 19:03:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539746#M7174</guid>
      <dc:creator>jho-splunk</dc:creator>
      <dc:date>2021-02-12T19:03:38Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539755#M7175</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/225785"&gt;@jho-splunk&lt;/a&gt;&amp;nbsp; for the reply!&lt;/P&gt;&lt;P&gt;i see this at the end..&amp;nbsp;&lt;/P&gt;&lt;P&gt;MSI (c) (E0:D0) [15:41:36:502]: Note: 1: 1708&lt;BR /&gt;MSI (c) (E0:D0) [15:41:36:502]: Note: 1: 2205 2: 3: Error&lt;BR /&gt;MSI (c) (E0:D0) [15:41:36:502]: Note: 1: 2228 2: 3: Error 4: SELECT `Message` FROM `Error` WHERE `Error` = 1708&lt;BR /&gt;MSI (c) (E0:D0) [15:41:36:502]: Note: 1: 2205 2: 3: Error&lt;BR /&gt;MSI (c) (E0:D0) [15:41:36:502]: Note: 1: 2228 2: 3: Error 4: SELECT `Message` FROM `Error` WHERE `Error` = 1709&lt;BR /&gt;MSI (c) (E0:D0) [15:41:36:502]: Product: Splunk Enterprise -- Installation failed.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 20:45:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539755#M7175</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-12T20:45:08Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539757#M7176</link>
      <description>&lt;P&gt;Additional information got from the log file:&lt;/P&gt;&lt;P&gt;InstallFiles: File: Copying new files, Directory: , Size:&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2205 2: 3: Patch&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2228 2: 3: Patch 4: SELECT `Patch`.`File_`, `Patch`.`Header`, `Patch`.`Attributes`, `Patch`.`Sequence`, `Patch`.`StreamRef_` FROM `Patch` WHERE `Patch`.`File_` = ? AND `Patch`.`#_MsiActive`=? ORDER BY `Patch`.`Sequence`&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2205 2: 3: Error&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2228 2: 3: Error 4: SELECT `Message` FROM `Error` WHERE `Error` = 1302&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2205 2: 3: MsiSFCBypass&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2228 2: 3: MsiSFCBypass 4: SELECT `File_` FROM `MsiSFCBypass` WHERE `File_` = ?&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2205 2: 3: MsiPatchHeaders&lt;BR /&gt;MSI (s) (08:88) [15:34:46:010]: Note: 1: 2228 2: 3: MsiPatchHeaders 4: SELECT `Header` FROM `MsiPatchHeaders` WHERE `StreamRef` = ?&lt;BR /&gt;MSI (s) (08:88) [15:34:46:214]: Note: 1: 2205 2: 3: PatchPackage&lt;BR /&gt;MSI (s) (08:88) [15:34:46:214]: Note: 1: 2205 2: 3: MsiPatchHeaders&lt;BR /&gt;MSI (s) (08:88) [15:34:46:214]: Note: 1: 2205 2: 3: PatchPackage&lt;BR /&gt;Action ended 15:35:48: InstallFiles. Return value 1.&lt;BR /&gt;MSI (s) (08:88) [15:35:48:740]: Doing action: RollbackRegmonDrvData&lt;BR /&gt;MSI (s) (08:88) [15:35:48:740]: Note: 1: 2205 2: 3: ActionText&lt;BR /&gt;Action 15:35:48: RollbackRegmonDrvData.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 21:16:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539757#M7176</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-12T21:16:07Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539767#M7177</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;Ah, that appears to be from the &lt;FONT face="courier new,courier"&gt;msiexec.exe&lt;/FONT&gt; log file.&amp;nbsp; What we want is the &lt;FONT face="courier new,courier"&gt;splunk.log&lt;/FONT&gt; file in the temp directory.&amp;nbsp; You should be able to find it by entering %TEMP% into the Explorer address bar.&amp;nbsp; Hopefully it will have more information on the &lt;FONT face="courier new,courier"&gt;_py_internal&lt;/FONT&gt; command.&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 22:44:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539767#M7177</guid>
      <dc:creator>jho-splunk</dc:creator>
      <dc:date>2021-02-12T22:44:29Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539775#M7178</link>
      <description>&lt;P&gt;Thanks.&amp;nbsp; I see the below in the log.&amp;nbsp; Will this help..&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-- Migration information is being logged to 'C:\Program Files\Splunk\var\log\splunk\migration.log.2021-02-11.18-00-10' --&lt;BR /&gt;Copying 'C:\Program Files\Splunk\etc\myinstall\splunkd.xml' to 'C:\Program Files\Splunk\etc\myinstall\splunkd.xml-migrate.bak'.&lt;/P&gt;&lt;P&gt;Checking saved search compatibility...&lt;/P&gt;&lt;P&gt;Checking for possible timezone configuration errors...&lt;/P&gt;&lt;P&gt;Handling deprecated files...&lt;/P&gt;&lt;P&gt;Checking script configuration...&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Handling Windows scripted inputs...&lt;/P&gt;&lt;P&gt;C:\Program Files\Splunk\Python-3.7\Lib\site-packages\splunk\clilib\cli.py:1066: DeprecationWarning: The 'warn' function is deprecated, use 'warning' instead&lt;BR /&gt;logger.warn("Failed cli cmd %s" % command)&lt;BR /&gt;Failed cli cmd _py_internal&lt;/P&gt;&lt;P&gt;This appears to be an upgrade of Splunk.&lt;BR /&gt;--------------------------------------------------------------------------------)&lt;/P&gt;&lt;P&gt;Splunk has detected an older version of Splunk installed on this machine. To&lt;BR /&gt;finish upgrading to the new version, Splunk's installer will automatically&lt;BR /&gt;update and alter your current configuration files. Deprecated configuration&lt;BR /&gt;files will be renamed with a .deprecated extension.&lt;/P&gt;&lt;P&gt;You can choose to preview the changes that will be made to your configuration&lt;BR /&gt;files before proceeding with the migration and upgrade:&lt;/P&gt;&lt;P&gt;If you want to migrate and upgrade without previewing the changes that will be&lt;BR /&gt;made to your existing configuration files, choose 'y'.&lt;BR /&gt;If you want to see what changes will be made before you proceed with the&lt;BR /&gt;upgrade, choose 'n'.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Perform migration and upgrade without previewing configuration changes? [y/n] y&lt;/P&gt;&lt;P&gt;Migrating to:&lt;BR /&gt;VERSION=8.1.2&lt;BR /&gt;BUILD=545206cc9f70&lt;BR /&gt;PRODUCT=splunk&lt;BR /&gt;PLATFORM=Windows-AMD64&lt;/P&gt;&lt;P&gt;6:00:22 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\SplunkMonitorNoHandleDrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:00:24 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\splknetdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:00:27 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\splunkdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:02:15 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c ""C:\Program Files\Splunk\bin\splunk.exe" start --answer-yes --no-prompt --accept-license --auto-ports &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;The system cannot find the path specified.&lt;BR /&gt;6:13:42 PM&lt;BR /&gt;cmd.exe /c "rundll32.exe setupapi,InstallHinfSection DefaultUninstall 132 C:\Program Files\Splunk\bin\splunkdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:13:44 PM&lt;BR /&gt;cmd.exe /c "rundll32.exe setupapi,InstallHinfSection DefaultUninstall 132 C:\Program Files\Splunk\bin\splknetdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:13:45 PM&lt;BR /&gt;cmd.exe /c "rundll32.exe setupapi,InstallHinfSection DefaultUninstall 132 C:\Program Files\Splunk\bin\SplunkMonitorNoHandleDrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:22:33 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 128 C:\Program Files\Splunk\bin\splunkdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:22:36 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 128 C:\Program Files\Splunk\bin\splknetdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:22:37 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 128 C:\Program Files\Splunk\bin\SplunkMonitorNoHandleDrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;6:22:39 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c ""C:\Program Files\Splunk\bin\splunk.exe" _internal first-time-run --answer-yes --no-prompt &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 13 Feb 2021 02:22:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539775#M7178</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-13T02:22:25Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539776#M7179</link>
      <description>&lt;P&gt;End of the file has the below info:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;-- Migration information is being logged to 'C:\Program Files\Splunk\var\log\splunk\migration.log.2021-02-12.15-37-56' --&lt;BR /&gt;Copying 'C:\Program Files\Splunk\etc\myinstall\splunkd.xml' to 'C:\Program Files\Splunk\etc\myinstall\splunkd.xml-migrate.bak'.&lt;/P&gt;&lt;P&gt;Checking saved search compatibility...&lt;/P&gt;&lt;P&gt;Handling deprecated files...&lt;/P&gt;&lt;P&gt;Checking script configuration...&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Handling Windows scripted inputs...&lt;/P&gt;&lt;P&gt;C:\Program Files\Splunk\Python-3.7\Lib\site-packages\splunk\clilib\cli.py:1066: DeprecationWarning: The 'warn' function is deprecated, use 'warning' instead&lt;BR /&gt;logger.warn("Failed cli cmd %s" % command)&lt;BR /&gt;Failed cli cmd _py_internal&lt;/P&gt;&lt;P&gt;This appears to be an upgrade of Splunk.&lt;BR /&gt;--------------------------------------------------------------------------------)&lt;/P&gt;&lt;P&gt;Splunk has detected an older version of Splunk installed on this machine. To&lt;BR /&gt;finish upgrading to the new version, Splunk's installer will automatically&lt;BR /&gt;update and alter your current configuration files. Deprecated configuration&lt;BR /&gt;files will be renamed with a .deprecated extension.&lt;/P&gt;&lt;P&gt;You can choose to preview the changes that will be made to your configuration&lt;BR /&gt;files before proceeding with the migration and upgrade:&lt;/P&gt;&lt;P&gt;If you want to migrate and upgrade without previewing the changes that will be&lt;BR /&gt;made to your existing configuration files, choose 'y'.&lt;BR /&gt;If you want to see what changes will be made before you proceed with the&lt;BR /&gt;upgrade, choose 'n'.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Perform migration and upgrade without previewing configuration changes? [y/n] y&lt;/P&gt;&lt;P&gt;Migrating to:&lt;BR /&gt;VERSION=8.1.2&lt;BR /&gt;BUILD=545206cc9f70&lt;BR /&gt;PRODUCT=splunk&lt;BR /&gt;PLATFORM=Windows-AMD64&lt;/P&gt;&lt;P&gt;3:38:02 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\SplunkMonitorNoHandleDrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;3:38:03 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\splknetdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;3:38:04 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c "C:\windows\system32\rundll32.exe setupapi,InstallHinfSection DefaultUninstall 128 C:\Program Files\Splunk\bin\splunkdrv.inf &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;3:39:05 PM&lt;BR /&gt;C:\windows\system32\cmd.exe /c ""C:\Program Files\Splunk\bin\splunk.exe" start --answer-yes --no-prompt --accept-license --auto-ports &amp;gt;&amp;gt; "C:\Users\ADMINI~1\AppData\Local\Temp\splunk.log" 2&amp;gt;&amp;amp;1"&lt;BR /&gt;'"C:\Program Files\Splunk\bin\splunk.exe"' is not recognized as an internal or external command,&lt;BR /&gt;operable program or batch file.&lt;/P&gt;</description>
      <pubDate>Sat, 13 Feb 2021 02:25:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539776#M7179</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-13T02:25:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539891#M7180</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Drat!&amp;nbsp; I was hoping it would provide more context, but clearly it does not.&amp;nbsp; We're going to need a Procmon log to troubleshoot further, which will be very large in size, unfortunately.&amp;nbsp; Are you able to open a Support case with Splunk?&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Feb 2021 10:23:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/539891#M7180</guid>
      <dc:creator>jho-splunk</dc:creator>
      <dc:date>2021-02-15T10:23:45Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/540035#M7182</link>
      <description>&lt;P&gt;Can you please let me know how to open one.. will do that!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 03:08:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/540035#M7182</guid>
      <dc:creator>vengisa</dc:creator>
      <dc:date>2021-02-16T03:08:05Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/540072#M7183</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;You will need to have access to a Support Program:&amp;nbsp;&lt;A href="https://www.splunk.com/en_us/support-and-services/support-programs.html" target="_blank"&gt;https://www.splunk.com/en_us/support-and-services/support-programs.html&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;If you do not, we may still be able to help you, but the problem is going to be getting access to the Procmon log I'm afraid.&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 10:55:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/540072#M7183</guid>
      <dc:creator>jho-splunk</dc:creator>
      <dc:date>2021-02-16T10:55:52Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/552051#M7419</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231499"&gt;@vengisa&lt;/a&gt; ,&lt;/P&gt;&lt;P&gt;did you manage to overcome this issue?&lt;BR /&gt;I've run into the same problem: Splunk upgrade from 7.3.6 to 8.0.9 on Windows Server 2016, installation seems to work fine until the progress bar stops and the Installer GUI disappears (after several minutes).&lt;BR /&gt;This happened to me only on 1 instance (Search Head with Splunk ES installed) in PROD environment. The same step worked fine in TEST env on the "twin" server.&lt;/P&gt;&lt;P&gt;I also had to restore a previous snapshot since some features of Splunk didn't work anymore after the rollback to 7.3.6.&lt;/P&gt;&lt;P&gt;Hope you have got good news!&lt;/P&gt;</description>
      <pubDate>Tue, 18 May 2021 13:38:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/552051#M7419</guid>
      <dc:creator>lpino</dc:creator>
      <dc:date>2021-05-18T13:38:00Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/552065#M7420</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/226696"&gt;@lpino&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Please see the following reply for instructions on how to troubleshoot:&amp;nbsp;&lt;A href="https://community.splunk.com/t5/Installation/Install-issue-on-Server-2016/m-p/540173/highlight/true#M7187" target="_blank"&gt;https://community.splunk.com/t5/Installation/Install-issue-on-Server-2016/m-p/540173/highlight/true#M7187&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- Jo.&lt;/P&gt;</description>
      <pubDate>Tue, 18 May 2021 14:52:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/552065#M7420</guid>
      <dc:creator>jho-splunk</dc:creator>
      <dc:date>2021-05-18T14:52:26Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/572496#M10781</link>
      <description>&lt;P&gt;Did you find what issue caused this or get it resolved?&amp;nbsp; I have a 14 server system at 2 sites running a multi-site cluster and all my servers upgraded successfully except one of my Search heads.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Oct 2021 16:24:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/572496#M10781</guid>
      <dc:creator>Funderburg78</dc:creator>
      <dc:date>2021-10-26T16:24:14Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk upgrade fails from 7.3.2 to 8.1.2 and rolls back in windows 2016 server</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/573782#M10831</link>
      <description>&lt;P&gt;Hi, in my case there was an application not compatible with Python 3 which I forgot to update (you can check the apps to update with Python Readiness App).&lt;BR /&gt;Once updated the application, the Splunk upgrade worked as expected.&lt;/P&gt;&lt;P&gt;Hope this may help.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Nov 2021 10:37:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-upgrade-fails-from-7-3-2-to-8-1-2-and-rolls-back-in/m-p/573782#M10831</guid>
      <dc:creator>lpino</dc:creator>
      <dc:date>2021-11-05T10:37:39Z</dc:date>
    </item>
  </channel>
</rss>

