Hi All, We are planning to upgrade Splunk search head which is currently running with the version 6.0.3 and ours is a distributed environment. Total number of search heads is four, out of which two are configured with 6.0.3 and other two with 6.2.1 (Enterprise Security and PCI). Shared search head pooling are used. All the search head/shared head pooling are configured in Linux (VM) Environment on premises.
So kindly let me know the exact steps/documents on how to upgrade the search head with shared search head pooling.
Note: We are going to upgrade only the search head initially then the rest of the components.