Our SLES shop is becoming a RedHat shop, so it's necessary to migrate our Splunk cluster. My current config is a single master, 3 clustered indexers, and 3 clustered search heads. I'm wondering if it's possible to shut down Splunk, copy everything in /opt/splunk from the SLES box to the Redhat box, then bring Splunk back online. This is essentially what we did when we went from using the Veritas vxfs file system to LVM volumes, so I thought it might work going from SLES to RHEL.
Has anyone done anything similar?