All Apps and Add-ons

Updating Splunkbase apps in Distributed Environment

wwhite12
Path Finder

When upgrading apps/add-ons in a distributed environment, is there a recommended best practice or is it similar to deploying the app initially where I can just paste the newer downloaded version from Splunkbase over the existing app and then push the new bundle to the peers to fully update the app? And also is there any scenario where a rolling restart for this wouldn’t be required?

Thanks in advance

0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

You have the right method for updating apps.
See $SPLUNK_HOME/etc/system/default/app.conf for which config files do not require a rolling restart. The settings are described in $SPLUNK_HOME/etc/system/README/app.conf.spec.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

You have the right method for updating apps.
See $SPLUNK_HOME/etc/system/default/app.conf for which config files do not require a rolling restart. The settings are described in $SPLUNK_HOME/etc/system/README/app.conf.spec.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...