I have upgraded my cluster setup from 6.3.0 to 6.4.1.
I have saved searches, scheduled searches, splunk reports etc developed in 6.3.0.
Can you please tell me what all changes I need to look into?
Like path, script output folders, settings etc.
My saved search are not running.
I checked directory $SPLUNKHOME/var/run/splunk and $SPLUNKHOME/var/run/splunk/csv.
I don't see any csv files here. Can please tell me how to look for logs?
Logs are in $SPLUNK_HOME/var/log/splunk.
Release notes describing the changes in each version are at http://docs.splunk.com/Documentation/Splunk/6.4.1/ReleaseNotes/MeetSplunk.
New features are listed here: http://docs.splunk.com/Documentation/Splunk/6.4.1/ReleaseNotes/MeetSplunk
Things to be aware of when you upgrade are here: http://docs.splunk.com/Documentation/Splunk/6.4.1/Installation/Aboutupgradingto6.4READTHISFIRST
Information about Splunk platform log files and troubleshooting is here: http://docs.splunk.com/Documentation/Splunk/6.4.1/Troubleshooting/WhatSplunklogsaboutitself
View solution in original post