Hi all,
We are upgrading our Splunk environment to the Splunk Cloud version 7.1 and which one should we be targeting on for the upgrade 7.1 or 7.2 our Splunk is on prime.
My own experience with 7.1.2 at scale in a hybrid environment (mostly cloud, but a lot of forwarders on-prem and a handful of heavies) has seen a lot of memory issues and quirks in Indexer cluster. We're, thankfully moving to 7.2 in the next few days. YMMV, though, since obviously the impact would depend on your own install.
And bonus, 7.2 has dark mode and a slew of other features. 7.2 Release Notes