Getting Data In

Error during Splunk forwarder upgrade from 7.2.0 to 8.1.0

ramshan
New Member

Getting below error after executing below command 

./splunk start --accept-license --answer-yes


It seems that the Splunk default certificates are being used. If certificate validation is turned on using the default certificates (not-recommended), this may result in loss of communication in mixed-version Splunk environments after upgrade.

"/base_app/splunk/splunkforwarder/etc/auth/ca.pem": already a renewed Splunk certificate: skipping renewal
"/base_app/splunk/splunkforwarder/etc/auth/cacert.pem": already a renewed Splunk certificate: skipping renewal
ERROR: Valid migration mode not specified.
ERROR while running migrate-distsearch-conf migration.

Labels (1)
0 Karma

amanve
Engager

It's been a long time. But did any one got any answers. I am stuck with same issue on aix machine. Trying to upgrade my forwarder from 8.2.3 to 9.2.3 version

 

0 Karma

dsanders80
Loves-to-Learn Lots

Did anyone ever offer any answer to this issue.  I am running into the same problem.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...