Archive
Highlighted

Moving splunk to a new server

Explorer

I am in the process to migrate our Splunk installation to a new server. I found how to move the Splunk index... a big part of the job!

Now I would like to know how I can move the configuration from our old server to the new one. Or maybe the configuration is part of the index?

Thanks,
Bernard

Tags (1)
0 Karma
Highlighted

Re: Moving splunk to a new server

Splunk Employee
Splunk Employee

Hello Bernard,

Your indexes are held in the location specified in your SPLUNKHOME/etc/splunk-launch.conf. By default, if you aren't using any custom indexes, the location is under /opt/splunk/var/lib/splunk/. The configuration can be retained by copying $SPLUNKHOME/etc/.

More on this topic can be found here:

http://www.splunk.com/wiki/Deploy:Migrating_a_Splunk_Install

View solution in original post

Highlighted

Re: Moving splunk to a new server

Explorer

Thanks, this is a very good start.

But I am not sure I can simply copy $SPLUNK_HOME/etc/. We are migrating from a CentOS 5 32-bit to CentOS 5 64-bit. I found some 32-bits files related to an installed app: pdfserver. But it seems the 64-bit binaries for this app have been installed at the same time as the 32-bit binaries. Should I understand from this the copy will be fine and the application pdfserver will be ok in the new environment?

Thanks,
Bernard