Deployment Architecture

OS upgrade


Hi All ,

We have 1 indexer, 1 SH and 1 DS . We are  planning for an OS upgrade (OS RHEL 6 to OL 7)  .All the these devices are on the Cloud . Can someone help me what are the steps to be taken from Splunk perspective during this upgrade . What are the checks to be done and is there any pattern like first indexer , then DS and then SH to be followed .

What to do in a fail over .

Splunk is not getting upgraded as of now . We are keeping the same splunk version 7.3.

I have already read this article 

but i am not upgrading splunk here . 

Labels (2)
0 Karma


Hi @rahulhari88,

there aren't special requirements for your operation, you can follow the order you like in upgrade.

Your Splunk 7.3.0 is compatible with every Linux with 3.x and 4.x Kernel version (

Anyway, take in attention to upgrade as soon as possible also Splunk.



0 Karma
Get Updates on the Splunk Community!

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...

Ready, Set, SOAR: How Utility Apps Can Up Level Your Playbooks!

 WATCH NOW Powering your capabilities has never been so easy with ready-made Splunk® SOAR Utility Apps. Parse ...

DevSecOps: Why You Should Care and How To Get Started

 WATCH NOW In this Tech Talk we will talk about what people mean by DevSecOps and deep dive into the different ...