Deployment Architecture

Does anyone have any details on index clustering from master_uri to manager_uri?

_olivier_
Path Finder

Hi splunkers,

I m using cluster master and indexers in spk 8.2.5

When I start my search heads, I got the error "master_uri. This setting is deprecated and might be removed entirely in a future release, use 'manager_uri' instead "

I didn't found on splunk documentation what is the max version supporting master_uri and what is the minimum version supporting manager_uri.

 

I need this point to be sure all my forwarders (multiple versions) can deal with manager_uri in a way they can upload data !

Does somebody have details about this  ?

 

0 Karma
1 Solution

isoutamo
SplunkTrust
SplunkTrust

Hi

I haven't exactly version information on my hand, but supposing that min is something 8.x.x. After that those bot should work. I haven't notice that there have been announced any dead line when old versions will be removed. In splunk 9 those new versions are default. I expecting that those old ones will be removed some days in future, but I haven't heard any exact days/versions for that.

When I check those from docs 8.2.x use old one and 9.0.0 use the new version https://docs.splunk.com/Documentation/Splunk/8.2.11/Indexer/indexerdiscovery#3._Configure_the_forwar...

Best options for you is start that changes as soon as possible.

r. Ismo

View solution in original post

0 Karma

_olivier_
Path Finder

Thank's everybody. With your answers et my following searches, I can effectively upgrade my core architecture to 9.0.X and at the same time upgrade my forwarders in a way to change this settings as soons as my forwarders should be compatible with this feture.

gcusello
SplunkTrust
SplunkTrust

Hi @_olivier_ ,

good for you, see next time!

let us know if we can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated by all the contributors 😉

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @_olivier_,

this feature is deprecated from 9.0.0 as you can read at https://docs.splunk.com/Documentation/Splunk/9.0.0/Admin/Serverconf

Ciao.

Giuseppe

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Definitely it's depreciated, but when it will be removed, is totally another story. That changes have starter somewhere 2019-2020. See https://www.splunk.com/en_us/blog/leadership/biased-language-has-no-place-in-tech.html

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

I haven't exactly version information on my hand, but supposing that min is something 8.x.x. After that those bot should work. I haven't notice that there have been announced any dead line when old versions will be removed. In splunk 9 those new versions are default. I expecting that those old ones will be removed some days in future, but I haven't heard any exact days/versions for that.

When I check those from docs 8.2.x use old one and 9.0.0 use the new version https://docs.splunk.com/Documentation/Splunk/8.2.11/Indexer/indexerdiscovery#3._Configure_the_forwar...

Best options for you is start that changes as soon as possible.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...