Deployment Architecture

OS upgrade


Hi All ,

We have 1 indexer, 1 SH and 1 DS . We are  planning for an OS upgrade (OS RHEL 6 to OL 7)  .All the these devices are on the Cloud . Can someone help me what are the steps to be taken from Splunk perspective during this upgrade . What are the checks to be done and is there any pattern like first indexer , then DS and then SH to be followed .

What to do in a fail over .

Splunk is not getting upgraded as of now . We are keeping the same splunk version 7.3.

I have already read this article 

but i am not upgrading splunk here . 

Labels (2)
0 Karma


Hi @rahulhari88,

there aren't special requirements for your operation, you can follow the order you like in upgrade.

Your Splunk 7.3.0 is compatible with every Linux with 3.x and 4.x Kernel version (

Anyway, take in attention to upgrade as soon as possible also Splunk.



0 Karma
Get Updates on the Splunk Community!

Splunk Forwarders and Forced Time Based Load Balancing

Splunk customers use universal forwarders to collect and send data to Splunk. A universal forwarder can send ...

NEW! Log Views in Splunk Observability Dashboards Gives Context From a Single Page

Today, Splunk Observability releases log views, a new feature for users to add their logs data from Splunk Log ...

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...