Deployment Architecture

In a distributed and clustered environ, which kvstores need migration to wiredTiger prior to upgrading to 9.0.4?

Glasses2
Communicator

I am about to upgrade 8.1.3 distributed / clustered environment to 9.0.4.

Per Docs> 

  • Migrate your App Key Value Store storage engine from the Memory Mapped (MMAP) storage engine to the Wired Tiger storage engine, and update your MongoDB version from 3.6 to 4.2. These updates are required in Splunk Enterprise 9.0. See Migrate the KV store storage engine in the Admin manual to plan your migration.
  • Back up your App Key Value Store (KV Store) databases prior to starting an upgrade. If you run version 7.1 and lower of Splunk Enterprise, you must stop Splunk Enterprise instances first.

I am going to do this part prior to the Upgrade.

I inherited this deployment so IDK where all the KVstore(s) are located or which nodes have a default KVstore needing the same migration/upgrade (e.g. MC or DS).

My Environment> SHC(4), SHC-deployer, IDXCM, IDXC(10), MC/LM, DS, HFs, UFs

Any advice appreciated.  If someone can share knowledge such as, how to validate KVstore locations and which KVstore(s) need update...  that would help.

 

Thank you

Thank you

Tags (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

Indexers and UFs never use KVStore so no upgrades are needed there.

Definitely upgrade the SHs.

I'm on the fence regarding SHCD, CM, MC/LM, and DS.  Absent advice to the contrary, I'd play it safe and upgrade them.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

0 Karma

Glasses2
Communicator

I think, better safe than sorry, looks like some apps use KVstores... 

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Indexers and UFs never use KVStore so no upgrades are needed there.

Definitely upgrade the SHs.

I'm on the fence regarding SHCD, CM, MC/LM, and DS.  Absent advice to the contrary, I'd play it safe and upgrade them.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...