Deployment Architecture

Compatibility between forwarders and indexers

AaronMoorcroft
Communicator

Hi Guys,

I could do with upgrading all our forwarders, mainly 5.0.2 on Windows to the latest forwarder build 6.2.2, the potential issue being that our indexer is 5.0.2. This will be upgraded also but not for a while, so my question is if I go ahead and upgrade the current forwarders from 5.0.2 up to 6.2.2 will they continue to work with a 5.0.2 Indexer ?

Thank you

Tags (1)
0 Karma
1 Solution

MuS
Legend

Hi AaronMoorcroft,

check the docs http://docs.splunk.com/Documentation/Splunk/6.2.2/Forwarding/Compatibilitybetweenforwardersandindexe... where you can find the following statement:

 6.x forwarders (universal/light/heavy) are backwards compatible down to 5.0.x indexers.

Hope that helps ...

cheers, MuS

View solution in original post

0 Karma

jeffland
SplunkTrust
SplunkTrust

It shouldn't be a problem to use 6.x forwarders with 5.x indexers, based on this documentation.

0 Karma

MuS
Legend

Hi AaronMoorcroft,

check the docs http://docs.splunk.com/Documentation/Splunk/6.2.2/Forwarding/Compatibilitybetweenforwardersandindexe... where you can find the following statement:

 6.x forwarders (universal/light/heavy) are backwards compatible down to 5.0.x indexers.

Hope that helps ...

cheers, MuS

0 Karma

jeffland
SplunkTrust
SplunkTrust

Meh, you were seconds faster... 🙂

AaronMoorcroft
Communicator

cheers pal 🙂

0 Karma

AaronMoorcroft
Communicator

That's spot on, thank you very much for that, now I guess I have some work to do :$

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...