All Apps and Add-ons

Upgrade Splunk Add-on for Unix and Linux version 8.1.0 to version current

CarolinaHB
Explorer

Hello, everyone!

Currently, I have the Splunk Add-on for Unix and Linux version 8.1.0 installed on my heavy forwarder. However, I need to upgrade it to the latest version, and I am seeking recommendations on how to carry out this process. Additionally, I would appreciate guidance on utilizing the deployment server to distribute the update to the Universal Forwarders.

God bless.

Regards

Labels (3)
0 Karma

m_pham
Splunk Employee
Splunk Employee

If you plan on using a deployment server to update your TA or apps, then that would be the easiest route. It's a lot to cover on the deployment server if you haven't used it before, give the link below a read if you can:

https://docs.splunk.com/Documentation/Splunk/9.1.2/Updating/Deploymentserverarchitecture

Splunk also covers the deployment server part in this training: Splunk Enterprise System Administration

https://www.splunk.com/en_us/pdfs/training/splunk-enterprise-system-administration-course-descriptio...

https://www.splunk.com/en_us/training/course-catalog.html?filters=filterGroup2SplunkEnterpriseCertif...

 

The gist of a deployment server is:

Your non-distributed Splunk instances check into your deployment server (DS) to retrieve any apps you want to deploy. The TAs/apps are all on your DS (etc/deployment-apps) and you manage what app your Splunk instances get with the DS serverclass.conf.

0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...