All Apps and Add-ons

Splunk App for Windows Infrastructure and Windows add-on version 6

msaz
Path Finder

Fresh install (not in production yet) so I can reconfigure as necessary.
Distributed deployment, all Splunk servers are Linux; 1 search head, 3 indexer cluster, 1 deployment server
Getting an error during guided setup re version 6 of the add-on is installed.
Have been following this guide:
https://docs.splunk.com/Documentation/MSApp/1.5.1/MSInfra/AbouttheSplunkAppforMSInfrastructurea

Okay to bypass this error?

alt text

0 Karma
1 Solution

adonio
Ultra Champion

install the TA that matches the requirement, 5.0.1 or 4.8.4

View solution in original post

0 Karma

rsanders30
Path Finder

You could use v6, but you would have to bypass the pre-requisite checks. However, please note that you have to complete certain steps prior to deploying v6. Right now, I personally feel it isn't worth the headache. I've come across various issues with dashboards and data not ingesting correctly.

0 Karma

adonio
Ultra Champion

install the TA that matches the requirement, 5.0.1 or 4.8.4

0 Karma

msaz
Path Finder

I used the 5.x version and it's working. Not sure why Splunk released the 6.x version and didn't include it as part of this. Must be for something else.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Vibe-coding, AI, and Splunkcraft: Highlights from the .conf26 Builder Bar

If you stopped by the Builder Bar at .conf26, thank you! This year, we brought ...

Thanks for the Memories: .conf26 Took Learning to New Heights

Thank you, Splunk Community, for making .conf26 in Denver one for the books. From packed Splunk University ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...