Getting Data In

Splunk on Windows Server 2012 R2

Engager

The Splunk software matrix doesn't mentioned support for Windows Server 2012 R2. What versions of Splunk and the Universal forwarder support Server 2012 R2?

Tags (2)
1 Solution

Splunk Employee
Splunk Employee

Splunk Employee
Splunk Employee

Splunk Employee
Splunk Employee

as Ellen mentioned, Splunk is currently in the process of certifying Windows Server 2012R2 and originally expected to complete the process early this year. however, we encountered a Microsoft bug that prevents us from certifying against the OS. we are working with Microsoft to resolve the issue and hope to be able to certify the platform later this year.

i'm really sorry for the delay, but in the meantime, we advise you to use 2008R2 or straight up 2012.

Splunk Employee
Splunk Employee

i would say no, since it is not yet a supported platform, the fact that it doesn't work yet isn't a bug. unless you're talking about a different, supported version of Windows.

0 Karma

Explorer

SO does this mean it is a know issue that windows event logs will not be read until certification?

0 Karma

Path Finder

Any update on Windows 2012 R2 support? It's holding up our upgrade.

0 Karma

Explorer

Is there any workaround to be able to read windows event logs on 2012r2

Path Finder

For v6.0.1 on the Universal Forwarder side we have it working and seems to be compatible, but not as an "official" compatible.

Explorer

so you can read event logs?

0 Karma

Splunk Employee
Splunk Employee

Testing for Windows 2012 R2 is in progress. Tentatively expect an official Splunk announcement on its supportability early 2014.

Splunk Employee
Splunk Employee

i was actually totally wrong, we failed to update the docs for 6.1. go right ahead and run it on 2012r2! the docs have now been updated.

0 Karma

Explorer

I was kind of confused because the download page has server 2012 r2 listed. So I was crossing my fingers that it was true. So the install only is compatible?
Versions Listed:
"Windows XP, Vista, 7, 8 and 8.1 (64-bit)
Windows Server 2003, 2003 R2, 2008, 2008 R2, 2012 and 2012 R2 (64-bit)"

0 Karma

Splunk Employee
Splunk Employee

please continue to refer to http://docs.splunk.com/Documentation/Splunk/latest/Installation/Systemrequirements#Windows_operating... to determine if the version you're interested is supported yet. as of 6.1, this has not changed.

0 Karma

Explorer

With Version 6.1 out is it now compatible with server 2012 r2 and can read event logs?

0 Karma

Engager

I'm still waiting to be able to do a full install on 2012R2. It has been on the market for 7 months now. Seems like you guys have had time to get past this by now.

Engager

We really need Splunk to fast track this. I have a new server farm going up and we no longer deploy Win Srv 2008 or 2008 R2. We now only deploy 2012 R2 on new servers.

Splunk Employee
Splunk Employee

Work is still in progress with Windows 2012 R2 testing. There is no ETA yet

Engager

It's now early 2014. Any timeframe on this issue?? I've lost splunk due to server upgrade.....

BR Frank