Deployment Architecture

In what order do we upgrade Splunk servers in our clustered environment from 6.3.0 to 6.4.1?

jishelar
Explorer

Hi,

We are upgrading all of our Splunk components from Splunk 6.3.0 to 6.4.1.

Following are the servers in the clustered environment.
a) License server
b) Deployment server
c) Cluster Master
d) Search Head Cluster Deployer
e) Search Heads
f) Indexers
g) Forwarders

What is recommended order to upgrade the above servers?

Thanks,
Jitendra

0 Karma

javiergn
Super Champion
0 Karma

jmulcaster_splu
Splunk Employee
Splunk Employee

We've also posted an upgrade roadmap with links to the latest documentation to help with upgrade planning. Check it out and let us know if you find it helpful. What's the order of operations for upgrading Splunk Enterprise?

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...